Security Advisory

CVE-2024-0133

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-09-26 05:21:33
Last updated 2024-09-26 13:30:42
Assigner nvidia
State PUBLISHED

Description

NVIDIA Container Toolkit 1.16.1 or earlier contains a vulnerability in the default mode of operation allowing a specially crafted container image to create empty files on the host file system. This does not impact use cases where CDI is used. A successful exploit of this vulnerability may lead to data tampering.