Issues with Nvidia expose critical infrastructure and AI models
13:22, 23.04.2025
Researchers are highly recommending enterprises that use Nvidia GPUs for AI tasks to check whether the systems are patched against the major vulnerabilities in the toolkit. The bugs might be used by the attackers to impact operations, as well as get access to sensitive data.
Reaction of NVIDIA to the vulnerability
Last September, there was an update to patch CVE-2024-0132, a TOCTOU vulnerability that received a CVSS rating of nine out of ten in the Container Toolkit.
Despite this update from NVIDIA, researchers from Trend Micro have found another flaw that could not be solved with this patch. There were lots of scenarios when patched systems still had high vulnerability risks.
In the recent blog post, the researchers from Trend Micro stated that this update for CVE-2024-0132 doesn’t solve the problem fully and mentioned that the bug allows DoS. This can become a huge issue for those users who considered their systems protected after application of the patch.
Was this article helpful to you?
VPS popular offers
-
-4.8%€/mo€ 11.55 /moBilled annuallyCPU3 Xeon CoresRAM1 GBSpace40 GB HDDBandwidthUnlimited
-
-16.3%€/mo€ 48 /moBilled annuallyCPU4 Xeon CoresRAM2 GBSpace30 GB SSDBandwidth40 Mbps
-
-10%€/mo€ 6 /moBilled annuallyCPU3 Xeon CoresRAM1 GBSpace20 GB SSDBandwidthUnlimited
-
-16.2%€/mo€ 67 /moBilled annuallyCPU4 Xeon CoresRAM4 GBSpace50 GB SSDBandwidth60 Mbps
-
-15.4%€/mo€ 130 /moBilled annuallyCPU6 Xeon CoresRAM16 GBSpace150 GB SSDBandwidth100 Mbps
-
-10.2%€/mo€ 123 /moBilled semiannuallyCPU6 Xeon CoresRAM16 GBSpace150 GB SSDBandwidth100 Mbps
-
-15.6%€/mo€ 38 /moBilled annuallyCPU3 Xeon CoresRAM1 GBSpace20 GB SSDBandwidth30 Mbps
-
-7.9%€/mo€ 29 /moBilled annuallyCPU6 Xeon CoresRAM8 GBSpace200 GB HDDBandwidthUnlimited
-
-9.6%€/mo€ 94 /moBilled annuallyCPU8 Epyc CoresRAM32 GBSpace200 GB NVMeBandwidthUnlimited
-
-15%€/mo€ 101 /moBilled annuallyCPU6 Xeon CoresRAM8 GBSpace100 GB SSDBandwidth80 Mbps