PublicCVE

CVE-2023-31031

MEDIUM4.2JSON exportCreate alert

Description

NVIDIA DGX Station A100 and DGX Station A800 SBIOS contains a vulnerability where a user may cause a heap-based buffer overflow by local access. A successful exploit of this vulnerability may lead to code execution, denial of service, information disclosure, and data tampering.

CVSS breakdown

CVSS 3.1
Attack Vector
Local
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
Low
Availability
Low

Affected products

  • NVIDIA / DGX A100All SBOIS versions prior to 1.25 – All SBOIS versions prior to 1.25