PT-2023-8265 · Nvidia · Nvidia Dgx A100 Sbios

Published

2023-04-22

·

Updated

2024-01-19

·

CVE-2023-31035

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NVIDIA DGX A100 SBIOS (affected versions not specified)
Description The issue is related to a transition to System Management Mode (SMM) due to an SMI interruption, which can be exploited to gain read, modify, or delete access to data, elevate privileges, execute arbitrary code, or cause a denial of service. A successful exploit may lead to code execution, denial of service, escalation of privileges, and information disclosure.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2024-00319
CVE-2023-31035

Affected Products

Nvidia Dgx A100 Sbios