CVE-2024-0114
HIGHNVIDIA Hopper HGX for 8-GPU - RCE/DoS/Escalation/Info Disclosure/Da...
Title source: llmDescription
NVIDIA Hopper HGX for 8-GPU contains a vulnerability in the HGX Management Controller (HMC) that may allow a malicious actor with administrative access on the BMC to access the HMC as an administrator. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
References (1)
Core 1
Core References
Vendor Advisory
https://nvidia.custhelp.com/app/answers/detail/a_id/5561
Scores
CVSS v3
8.1
EPSS
0.0001
EPSS Percentile
0.4%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:L/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-1244
Status
published
Products (4)
NVIDIA/NVIDIA Hopper HGX 8-GPU
HGX-22.10-1-rc57 (1.3.0/1.3.1)
NVIDIA/NVIDIA Hopper HGX 8-GPU
HGX-22.10-1-rc59 (1.3.2)
NVIDIA/NVIDIA Hopper HGX 8-GPU
HGX-22.10-1-rc63 (1.4.0)
NVIDIA/NVIDIA Hopper HGX 8-GPU
HGX-22.10-1-rc67 (1.5.0)
Published
Mar 05, 2025
Tracked Since
Feb 18, 2026