Vulnerabilities > Nvidia > High

DATE CVE VULNERABILITY TITLE RISK
2024-10-15 CVE-2024-0129 Path Traversal vulnerability in Nvidia Nemo
NVIDIA NeMo contains a vulnerability in SaveRestoreConnector where a user may cause a path traversal issue via an unsafe .tar file extraction.
local
low complexity
nvidia CWE-22
7.8
2024-09-26 CVE-2024-0132 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Nvidia Container Toolkit and Nvidia GPU Operator
NVIDIA Container Toolkit 1.16.1 or earlier contains a Time-of-check Time-of-Use (TOCTOU) vulnerability when used with default configuration where a specifically crafted container image may gain access to the host file system.
network
high complexity
nvidia CWE-367
8.3
2024-08-31 CVE-2024-0110 Out-of-bounds Write vulnerability in Nvidia Cuda Toolkit
NVIDIA CUDA Toolkit contains a vulnerability in command `cuobjdump` where a user may cause an out-of-bound write by passing in a malformed ELF file.
local
low complexity
nvidia CWE-787
7.8
2024-08-12 CVE-2024-0113 Path Traversal vulnerability in Nvidia products
NVIDIA Mellanox OS, ONYX, Skyway, and MetroX-3 XCC contain a vulnerability in the web support, where an attacker can cause a CGI path traversal by a specially crafted URI.
network
low complexity
nvidia CWE-22
8.8
2024-08-08 CVE-2024-0104 Unspecified vulnerability in Nvidia products
NVIDIA Mellanox OS, ONYX, Skyway, MetroX-2 and MetroX-3 XC contain a vulnerability in the LDAP AAA component, where a user can cause improper access.
network
low complexity
nvidia
8.8
2024-08-08 CVE-2024-0101 Unspecified vulnerability in Nvidia products
NVIDIA Mellanox OS, ONYX, Skyway, MetroX-2 and MetroX-3 XC contain a vulnerability in ipfilter, where improper ipfilter definitions could enable an attacker to cause a failure by attacking the switch.
network
low complexity
nvidia
7.5
2024-08-08 CVE-2024-0107 Out-of-bounds Read vulnerability in Nvidia GPU Display Driver and Virtual GPU
NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular user can cause an out-of-bounds read.
local
low complexity
nvidia CWE-125
7.8
2024-08-08 CVE-2024-0108 Improper Handling of Exceptional Conditions vulnerability in Nvidia Jetson Linux
NVIDIA Jetson Linux contains a vulnerability in NvGPU where error handling paths in GPU MMU mapping code fail to clean up a failed mapping attempt.
local
low complexity
nvidia CWE-755
8.8
2024-06-13 CVE-2024-0084 Unspecified vulnerability in Nvidia Cloud Gaming and Virtual GPU
NVIDIA vGPU software for Linux contains a vulnerability in the Virtual GPU Manager, where the guest OS could execute privileged operations.
local
low complexity
nvidia
7.8
2024-06-13 CVE-2024-0085 Unspecified vulnerability in Nvidia Cloud Gaming and Virtual GPU
NVIDIA vGPU software for Windows and Linux contains a vulnerability where unprivileged users could execute privileged operations on the host.
local
low complexity
nvidia
7.8