BlueField / ConnectX firmware: Improper certificate validation / access control
CVSS 8.7CVE-2024-0106NVIDIA / GPU stackcurated
Impact
Improper certificate validation / access control
Who can reach it
Network-adjacent
What to do
Flash NIC/DPU firmware; node reboot
References
Related entries
- Jetson (Xavier/TX/Nano): Improper error handlingCVE-2024-0108 · Jetson (Xavier/TX/Nano)High
- BlueField DPU: Access-control bypass on the DPUCVE-2025-23256 · BlueField DPUHigh
- NVIDIA License System - Delegated Licensing Service (DLS): An unauthorised action against the DLS reaches highCVE-2025-23293 · NVIDIA License System - Delegated Licensing Service (DLS)High
- NemoClaw: Sensitive info exposure in logsCVE-2026-24222 · NemoClawHigh
- NVIDIA GPU Display Driver - kernel mode layer (Windows nvlddmkm.sys and Linux nvidia.ko): A specially crafted shaderCVE-2022-28181 · NVIDIA GPU Display Driver - kernel mode layer (Windows nvlddmkm.sys and Linux nvidia.ko)High
- NVIDIA GPU Display Driver - Windows DirectX 11 user mode driver (nvwgf2um.dll / nvwgf2umx.dll): A crafted shader causesCVE-2022-28182 · NVIDIA GPU Display Driver - Windows DirectX 11 user mode driver (nvwgf2um.dll / nvwgf2umx.dll)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.