PT-2023-16085 · Nvidia · Nvidia Dgx A100 Sbios

Published

2023-04-22

·

Updated

2023-05-02

·

CVE-2023-0206

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NVIDIA DGX A100 SBIOS (affected versions not specified)
Description The issue allows an attacker to modify arbitrary memory of SMRAM by exploiting the NVME SMM API, potentially leading to denial of service, escalation of privileges, and information disclosure.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2023-0206

Affected Products

Nvidia Dgx A100 Sbios