DGX H100 BMC (openBMC): RCE on BMC (web server plugin stack overflow)
CVSS 8.8CVE-2023-25528NVIDIA / GPU stackcurated
Impact
RCE on BMC (web server plugin stack overflow)
Who can reach it
Network-adjacent attacker on the management LAN
What to do
Flash BMC to 23.08.18 out-of-band; segregate BMC network; no tenant eviction required
References
Related entries
- UFM Enterprise / UFM Appliance / UFM CyberAI: Fabric-manager privesc, data corruption, service disruption via improperCVE-2024-0130 · UFM Enterprise / UFM Appliance / UFM CyberAIHigh
- NVIDIA App: Local privescCVE-2025-23253 · NVIDIA AppHigh
- TensorRT-LLM: RCE via unsafe pickle deserializationCVE-2025-23254 · TensorRT-LLMHigh
- NVIDIA AIStore - AuthN: A flaw in the AIStore authentication component reaches privilege escalation, informationCVE-2025-33186 · NVIDIA AIStore - AuthNHigh
- NVIDIA TAO Toolkit: An uncontrolled search path loads an attacker-planted resource, reaching privilege escalationCVE-2025-33208 · NVIDIA TAO ToolkitHigh
- NVIDIA Merlin Transformers4Rec: The Trainer component deserializes untrusted data, reaching code executionCVE-2025-33213 · NVIDIA Merlin Transformers4RecHigh
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.