Issues with Nvidia expose critical infrastructure and AI models
13:22, 23.04.2025
Researchers are highly recommending enterprises that use Nvidia GPUs for AI tasks to check whether the systems are patched against the major vulnerabilities in the toolkit. The bugs might be used by the attackers to impact operations, as well as get access to sensitive data.
Reaction of NVIDIA to the vulnerability
Last September, there was an update to patch CVE-2024-0132, a TOCTOU vulnerability that received a CVSS rating of nine out of ten in the Container Toolkit.
Despite this update from NVIDIA, researchers from Trend Micro have found another flaw that could not be solved with this patch. There were lots of scenarios when patched systems still had high vulnerability risks.
In the recent blog post, the researchers from Trend Micro stated that this update for CVE-2024-0132 doesn’t solve the problem fully and mentioned that the bug allows DoS. This can become a huge issue for those users who considered their systems protected after application of the patch.
Was this article helpful to you?
VPS popular offers
-
-10%€/mo€ 40.7 /moBilled annuallyCPU6 Xeon CoresRAM16 GBSpace400 GB HDDBandwidth300 Gb
-
-8.9%€/mo€ 56 /moBilled annuallyCPU6 Xeon CoresRAM16 GBSpace400 GB HDDBandwidthUnlimited
-
-15%€/mo€ 101 /moBilled annuallyCPU6 Xeon CoresRAM8 GBSpace100 GB SSDBandwidth80 Mbps
-
-4.7%€/mo€ 10.44 /moBilled annuallyCPU3 Xeon CoresRAM1 GBSpace40 GB HDDBandwidth300 Gb
-
€/moOSCentOSCPU8 Epyc CoresRAM32 GBSpace200 GB NVMeSoftwareKeitaroBandwidthUnlimited
-
-21.4%€/mo€ 67 /moBilled annuallyCPU6 Xeon CoresRAM8 GBSpace100 GB SSDBandwidth500 GB
-
-10%€/mo€ 60.5 /moBilled annuallyCPU4 Xeon CoresRAM4 GBSpace50 GB SSDBandwidthUnlimited
-
-8.1%€/mo€ 31.25 /moBilled annuallyCPU6 Xeon CoresRAM8 GBSpace200 GB HDDBandwidthUnlimited
-
-10%€/mo€ 181.5 /moBilled annuallyCPU10 Xeon CoresRAM64 GBSpace300 GB SSDBandwidthUnlimited
-
-20.5%€/mo€ 95 /moBilled annuallyCPU6 Xeon CoresRAM16 GBSpace150 GB SSDBandwidth10 TB