GPU VulnDB

Database/Control plane, storage & DevOps

OpenVINO Model Server: Input-validation flaw in OpenVINO Model Server reachable without authentication

CVE-2023-31203Control plane, storage & DevOpscurated

Impact

Input-validation flaw in OpenVINO Model Server reachable without authentication. Same exposure profile as the later Model Server issues - it sits on the inference request path.

Who can reach it

Anything that can reach the serving endpoint.

What to do

Upgrade to the 2022.3 or later Model Server build shipped with OpenVINO 2023. Container update and rolling restart.

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.