Security Bulletin: NVIDIA DGX A100 Firmware - June 2022
Search CVEs in bulletin 2022/5367 by description or CWE
Year: 2022 | Bulletin: 5367
Title: Security Bulletin: NVIDIA DGX A100 Firmware - June 2022
Updated: 2022-06-07T00:00:00Z
CVEs: 3
Search by CVE count, CVE description, or CWE.
Matching CVEs: 3
No matching CVEs found.
| Date | Scope | CVE / Details |
|---|---|---|
| 2022-06-07 | CWE-787 NVIDIA DGX A100 contains a vulnerability in SBIOS in the IpSecDxe, where a user with elevated privileges and a preconditioned heap can exploit an out-of-bounds write vulnerability, which may lead to code execution, denial of service, data integrity impact, and information disclosure. Security Bulletin: NVIDIA DGX A100 Firmware - June 2022 NVIDIA has released a security update for NVIDIA DGX A100 firmware. This update addresses issues that may lead to information disclosure, denial of service, or escalation of privileges.<div>To protect your system, download and install this firmware update through the <a href="https://nvid.nvidia.com/dashboard/">NVIDIA Enterprise Support Portal</a>.</div> | |
| 2022-06-07 | CWE-787 NVIDIA DGX A100 contains a vulnerability in SBIOS in the SmbiosPei, which may allow a highly privileged local attacker to cause an out-of-bounds write, which may lead to code execution, denial of service, compromised integrity, and information disclosure. Security Bulletin: NVIDIA DGX A100 Firmware - June 2022 NVIDIA has released a security update for NVIDIA DGX A100 firmware. This update addresses issues that may lead to information disclosure, denial of service, or escalation of privileges.<div>To protect your system, download and install this firmware update through the <a href="https://nvid.nvidia.com/dashboard/">NVIDIA Enterprise Support Portal</a>.</div> | |
| 2022-06-07 | CWE-824 NVIDIA DGX A100 contains a vulnerability in SBIOS in the Ofbd, where a local user with elevated privileges can cause access to an uninitialized pointer, which may lead to code execution, escalation of privileges, denial of service, and information disclosure. The scope of impact can extend to other components. Security Bulletin: NVIDIA DGX A100 Firmware - June 2022 NVIDIA has released a security update for NVIDIA DGX A100 firmware. This update addresses issues that may lead to information disclosure, denial of service, or escalation of privileges.<div>To protect your system, download and install this firmware update through the <a href="https://nvid.nvidia.com/dashboard/">NVIDIA Enterprise Support Portal</a>.</div> |