Security Advisory

CVE-2023-31035

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-01-12 18:31:38
Last updated 2024-08-30 19:10:51
Assigner nvidia
State PUBLISHED

Description

NVIDIA DGX A100 SBIOS contains a vulnerability where an attacker may cause an SMI callout vulnerability that could be used to execute arbitrary code at the SMM level. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, and information disclosure.