Issues with Nvidia expose critical infrastructure and AI models
13:22, 23.04.2025
Researchers are highly recommending enterprises that use Nvidia GPUs for AI tasks to check whether the systems are patched against the major vulnerabilities in the toolkit. The bugs might be used by the attackers to impact operations, as well as get access to sensitive data.
Reaction of NVIDIA to the vulnerability
Last September, there was an update to patch CVE-2024-0132, a TOCTOU vulnerability that received a CVSS rating of nine out of ten in the Container Toolkit.
Despite this update from NVIDIA, researchers from Trend Micro have found another flaw that could not be solved with this patch. There were lots of scenarios when patched systems still had high vulnerability risks.
In the recent blog post, the researchers from Trend Micro stated that this update for CVE-2024-0132 doesn’t solve the problem fully and mentioned that the bug allows DoS. This can become a huge issue for those users who considered their systems protected after application of the patch.
Was this article helpful to you?
VPS popular offers
-
-16.3%€/mo€ 48 /moBilled annuallyCPU4 Xeon CoresRAM2 GBSpace30 GB SSDBandwidth40 Mbps
-
-9.1%€/mo€ 165 /moBilled annuallyCPU10 Xeon CoresRAM64 GBSpace300 GB SSDBandwidthUnlimited
-
-8%€/mo€ 29.5 /moBilled annuallyCPU4 Epyc CoresRAM4 GBSpace50 GB NVMeBandwidthUnlimited
-
-10%€/mo€ 12.35 /moBilled annuallyCPU4 Xeon CoresRAM4 GBSpace100 GB HDDBandwidth300 Gb
-
-10%€/mo€ 23 /moBilled annuallyCPU6 Xeon CoresRAM8 GBSpace200 GB HDDBandwidthUnlimited
-
-8.8%€/mo€ 46.69 /moBilled annuallyCPU6 Xeon CoresRAM16 GBSpace400 GB HDDBandwidth300 Gb
-
-7.9%€/mo€ 29 /moBilled annuallyCPU6 Xeon CoresRAM8 GBSpace200 GB HDDBandwidthUnlimited
-
€/moOSCentOSCPU10 Epyc CoresRAM64GBSpace400 GB NVMeSoftwareKeitaroBandwidthUnlimited
-
-20.4%€/mo€ 18 /moBilled annuallyCPU2 Xeon CoresRAM2 GBSpace30 GB SSDBandwidth300 GB
-
-22.2%€/mo€ 33 /moBilled annuallyCPU4 Xeon CoresRAM4 GBSpace50 GB SSDBandwidth300 GB