PT-2025-9730 · Nvidia · Nvidia Hopper Hgx

Published

2025-02-28

·

Updated

2025-05-03

·

CVE-2024-0114

CVSS v3.1

8.1

High

VectorAV:L/AC:L/PR:H/UI:N/S:C/C:L/I:H/A:H
Name of the Vulnerable Software and Affected Versions NVIDIA Hopper HGX for 8-GPU contains a vulnerability in the HGX Management Controller (HMC)
Description The issue is related to a vulnerability in the HGX Management Controller (HMC) of the NVIDIA Hopper HGX for 8-GPU, which may allow a malicious actor with administrative access on the BMC to access the HMC as an administrator. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Recommendations As a temporary workaround, consider restricting access to the HMC to minimize the risk of exploitation. Update to a version that includes the fix for this vulnerability. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Unsafe Debug Access Level

Weakness Enumeration

Related Identifiers

BDU:2025-02395
CVE-2024-0114

Affected Products

Nvidia Hopper Hgx