Security Advisory

CVE-2023-25506

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-04-22 02:30:26
Last updated 2025-02-04 19:03:47
Assigner nvidia
State PUBLISHED

Description

NVIDIA DGX-1 contains a vulnerability in Ofbd in AMI SBIOS, where a preconditioned heap can allow a user with elevated privileges to cause an access beyond the end of a buffer, which may lead to code execution, escalation of privileges, denial of service and information disclosure. The scope of the impact of this vulnerability can extend to other components.