CyberzSOC

Publication detail
← Back to advisories & guidance

2024-104: Critical Vulnerability in NVIDIA Container Toolkit ↗ source

September 27, 2024 CERT-EU Advisory

Summary

NVIDIA Container Toolkit is providing containerised AI applications with access to GPU resources. This vulnerability impacts any AI application that is running the vulnerable container toolkit to enable GPU support. This vulnerability could allow a rogue user or software to escape their containers and ultimately take complete control of the underlying host [1]. The vulnerability CCVE-2024-0132 has a CVSS score of 9.0 out of 10. It is a Time-ofCheck/Time-of-Use (TOC/TOU) vulnerability, a type of race condition.

News Coverage

No coverage found in monitored research blogs or news feeds.

CVEs Referenced in This Publication

No CVEs are referenced in this publication.

Vendors Named in This Publication

No KEV-catalogued vendors are named in this publication.