Vulnerabilidades en NVIDIA

742 resultados
Análisis Vexday

O portfólio de vulnerabilidades da NVIDIA reúne 693 CVEs catalogadas, com 18 classificadas como críticas e 58 surgidas nos últimos 90 dias, indicando um fluxo contínuo de descobertas que exige monitoramento ativo. Nenhuma vulnerabilidade consta atualmente no catálogo KEV da CISA, taxa que fica abaixo da média geral do catálogo, sugerindo menor pressão imediata de exploração em campo — mas não ausência de risco. A CVE mais perigosa no momento é CVE-2024-0132, com EPSS de 0,3646, o valor mais elevado observado no conjunto, o que a posiciona como prioridade de remediação. A falha mais recorrente é CWE-125 (leitura fora dos limites de buffer), padrão que tende a afetar componentes de baixo nível como drivers e firmware, onde a superfície de ataque costuma ser ampla e o impacto potencial elevado.

CVE-2024-0140MEDIUMNVIDIA RAPIDS contains a vulnerability in cuDF and cuML, where a user could cause a deserialization of untrusted data issue. A successful exEPSS 0.2%CVE-2021-1109HIGHNVIDIA camera firmware contains a multistep, timing-related vulnerability where an unauthorized modification by camera resources may result EPSS 0.2%CVE-2023-31031MEDIUMCVEEPSS 0.2%CVE-2025-23260MEDIUMNVIDIA AIStore contains a vulnerability in the AIS Operator where a user may gain elevated k8s cluster access by using the ServiceAccount atEPSS 0.2%CVE-2023-31017HIGHCVEEPSS 0.2%CVE-2024-0146HIGHNVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a malicious guest could cause memory corruption. A successfuEPSS 0.2%CVE-2025-23306HIGHNVIDIA Megatron-LM for all platforms contains a vulnerability in the megatron/training/ arguments.py component where an attacker could causeEPSS 0.2%CVE-2026-24155HIGHNVIDIA NeMo Framework for all platforms contains a code injection vulnerability. A successful exploit of this vulnerability might lead to coEPSS 0.2%CVE-2024-53869MEDIUMNVIDIA Unified Memory driver for Linux contains a vulnerability where an attacker could leak uninitialized memory. A successful exploit of tEPSS 0.2%CVE-2025-23305HIGHNVIDIA Megatron-LM for all platforms contains a vulnerability in the tools component, where an attacker may exploit a code injection issue. EPSS 0.2%CVE-2021-34390MEDIUMTrusty contains a vulnerability in the NVIDIA TLK kernel function where a lack of checks allows the exploitation of an integer overflow throEPSS 0.2%CVE-2021-1125MEDIUMNVIDIA GPU and Tegra hardware contain a vulnerability in the internal microcontroller which may allow a user with elevated privileges to corEPSS 0.2%CVE-2023-25509MEDIUMNVIDIA DGX-1 SBIOS contains a vulnerability in Bds, which may lead to code execution, denial of service, and escalation of privileges.EPSS 0.2%CVE-2024-0082HIGHCVEEPSS 0.2%CVE-2024-0078MEDIUMCVEEPSS 0.2%CVE-2024-0079MEDIUMCVEEPSS 0.2%CVE-2023-31008HIGHNVIDIA DGX H100 BMC contains a vulnerability in IPMI, where an attacker may cause improper input validation. A successful exploit of this vuEPSS 0.2%CVE-2024-0096HIGHCVEEPSS 0.2%CVE-2022-31613HIGHNVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer, where any local user can cause a null-pointer derefEPSS 0.2%CVE-2018-6243NVIDIA Tegra TLK Widevine Trust Application contains a vulnerability in which missing the input parameter checking of video metadata count mEPSS 0.2%