Cumulus Linux (switch OS): Cross-tenant info disclosure (VxLAN IPv6 mis-forwarding on SVI)
CVSS 7.5CVE-2023-25525NVIDIA / GPU stackcurated
Impact
Cross-tenant info disclosure (VxLAN IPv6 mis-forwarding on SVI)
Who can reach it
Network-adjacent unauthenticated on the fabric
What to do
Upgrade Cumulus Linux to 5.6.0+; rolling switch upgrade, fabric redundancy required
References
Related entries
- DGX A100 SBIOS: Improper crypto config / UI-layer restriction in SBIOSCVE-2023-31032 · DGX A100 SBIOSHigh
- DGX A100 SBIOS: Improper input validation in SBIOSCVE-2023-31035 · DGX A100 SBIOSHigh
- Triton Inference Server: RCE / privesc / data tampering via model-load path traversal (`--model-control explicit`)CVE-2023-31036 · Triton Inference ServerHigh
- Linux kernel amdgpu GEM/VM/command-submission ioctl surface (drm/amdgpu): A NULL pointer dereference in the amdgpuCVE-2023-52883 · Linux kernel amdgpu GEM/VM/command-submission ioctl surface (drm/amdgpu)High
- ChatRTX: Local privescCVE-2024-0096 · ChatRTXHigh
- ChatRTX: Local privescCVE-2024-0097 · ChatRTXHigh
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.