UFM Enterprise / UFM Appliance / UFM CyberAI: Fabric-manager privesc, data corruption, service disruption via improper
CVE-2024-0130NVIDIA / GPU stackcurated
Impact
Fabric-manager privesc, data corruption, service disruption via improper authentication on the Ethernet mgmt interface
Who can reach it
Network-adjacent attacker on the fabric management network
What to do
Upgrade UFM; isolate the UFM mgmt interface to a dedicated VLAN; no tenant eviction, but InfiniBand fabric control is at stake
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.