Issues with Nvidia expose critical infrastructure and AI models
13:22, 23.04.2025
Researchers are highly recommending enterprises that use Nvidia GPUs for AI tasks to check whether the systems are patched against the major vulnerabilities in the toolkit. The bugs might be used by the attackers to impact operations, as well as get access to sensitive data.
Reaction of NVIDIA to the vulnerability
Last September, there was an update to patch CVE-2024-0132, a TOCTOU vulnerability that received a CVSS rating of nine out of ten in the Container Toolkit.
Despite this update from NVIDIA, researchers from Trend Micro have found another flaw that could not be solved with this patch. There were lots of scenarios when patched systems still had high vulnerability risks.
In the recent blog post, the researchers from Trend Micro stated that this update for CVE-2024-0132 doesn’t solve the problem fully and mentioned that the bug allows DoS. This can become a huge issue for those users who considered their systems protected after application of the patch.
Was this article helpful to you?
VPS popular offers
-
-15.4%€/mo€ 130 /moBilled annuallyCPU6 Xeon CoresRAM16 GBSpace150 GB SSDBandwidth100 Mbps
-
-9.1%€/mo€ 66.5 /moBilled annuallyCPU6 Epyc CoresRAM16 GBSpace150 GB NVMeBandwidthUnlimited
-
-10%€/mo€ 115.5 /moBilled annuallyCPU4 Xeon CoresRAM8 GBSpace100 GB SSDBandwidthUnlimited
-
-10%€/mo€ 7.2 /moBilled annuallyCPU2 Epyc CoresRAM1 GBSpace10 GB NVMeBandwidthUnlimited
-
-10%€/mo€ 96.8 /moBilled annuallyCPU8 Epyc CoresRAM32 GBSpace200 GB NVMeBandwidthUnlimited
-
-21.5%€/mo€ 26 /moBilled annuallyCPU2 Xeon CoresRAM2 GBSpace75 GB SSDBandwidth300 GB
-
€/moOSCentOSCPU8 Epyc CoresRAM32 GBSpace200 GB NVMeSoftwareKeitaroBandwidthUnlimited
-
-9%€/mo€ 57.7 /moBilled annuallyCPU6 Xeon CoresRAM16 GBSpace150 GB SSDBandwidthUnlimited
-
-20.5%€/mo€ 57 /moBilled annuallyCPU6 Xeon CoresRAM8 GBSpace100 GB SSDBandwidth8 TB
-
-5.4%€/mo€ 11.73 /moBilled annuallyCPU4 Xeon CoresRAM2 GBSpace60 GB HDDBandwidth300 Gb