DGX H100 BMC (IPMI): Credential exposure
CVSS 7.6CVE-2023-25531NVIDIA / GPU stackcurated
Impact
Credential exposure
Who can reach it
Network-adjacent IPMI client
What to do
Flash BMC 23.08.18; rotate IPMI credentials; disable IPMI where possible
References
Related entries
- DGX H100 BMC (IPMI): PrivescCVE-2023-31008 · DGX H100 BMC (IPMI)High
- DGX H100 BMC (IPMI): DoS of the BMCCVE-2023-31010 · DGX H100 BMC (IPMI)Medium
- DGX H100 BMC (IPMI): Info disclosure of credentialsCVE-2023-25532 · DGX H100 BMC (IPMI)Medium
- DGX H100 BMC (IPMI): Info disclosureCVE-2023-25534 · DGX H100 BMC (IPMI)Medium
- NVIDIA License System - Delegated Licensing Service (DLS): An unauthorised action against the DLS reaches partialCVE-2024-0122 · NVIDIA License System - Delegated Licensing Service (DLS)High
- Container Toolkit / GPU Operator: Container escape to host root (insufficient input validation)CVE-2024-0135 · Container Toolkit / GPU OperatorHigh
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.