Issues with Nvidia expose critical infrastructure and AI models
13:22, 23.04.2025
Researchers are highly recommending enterprises that use Nvidia GPUs for AI tasks to check whether the systems are patched against the major vulnerabilities in the toolkit. The bugs might be used by the attackers to impact operations, as well as get access to sensitive data.
Reaction of NVIDIA to the vulnerability
Last September, there was an update to patch CVE-2024-0132, a TOCTOU vulnerability that received a CVSS rating of nine out of ten in the Container Toolkit.
Despite this update from NVIDIA, researchers from Trend Micro have found another flaw that could not be solved with this patch. There were lots of scenarios when patched systems still had high vulnerability risks.
In the recent blog post, the researchers from Trend Micro stated that this update for CVE-2024-0132 doesn’t solve the problem fully and mentioned that the bug allows DoS. This can become a huge issue for those users who considered their systems protected after application of the patch.
Was this article helpful to you?
VPS popular offers
-
-15.6%€/mo€ 38 /moBilled annuallyCPU3 Xeon CoresRAM1 GBSpace20 GB SSDBandwidth30 Mbps
-
-10%€/mo€ 52 /moBilled annuallyCPU6 Xeon CoresRAM16 GBSpace150 GB SSDBandwidthUnlimited
-
-9.2%€/mo€ 72 /moBilled annuallyCPU4 Xeon CoresRAM4 GBSpace100 GB SSDBandwidthUnlimited
-
€/moOSCentOSCPU8 Epyc CoresRAM32 GBSpace200 GB NVMeSoftwareKeitaroBandwidthUnlimited
-
-8.9%€/mo€ 56 /moBilled annuallyCPU6 Xeon CoresRAM16 GBSpace400 GB HDDBandwidthUnlimited
-
-10%€/mo€ 14.9 /moBilled annuallyCPU3 Epyc CoresRAM2 GBSpace20 GB NVMeBandwidthUnlimited
-
-7.4%€/mo€ 23.1 /moBilled annuallyCPU4 Xeon CoresRAM4 GBSpace100 GB SSDBandwidthUnlimited
-
-15.5%€/mo€ 95 /moBilled annuallyCPU6 Xeon CoresRAM8 GBSpace100 GB SSDBandwidth80 Mbps
-
-10%€/mo€ 15.95 /moBilled annuallyCPU4 Xeon CoresRAM4 GBSpace50 GB SSDBandwidthUnlimited
-
-10%€/mo€ 36.3 /moBilled annuallyCPU6 Epyc CoresRAM8 GBSpace100 GB NVMeBandwidthUnlimited