CVE-2024-0115

NVIDIA CV-CUDA for Ubuntu 20.04, Ubuntu 22.04, and Jetpack contains a vulnerability in Python APIs where a user may cause an uncontrolled resource consumption issue by a long running CV-CUDA Python process. A successful exploit of this vulnerability may lead to denial of service and data loss.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.1 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
nvidiaCNA
6.1 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 12%
VendorProductVersion
nvidiacv-cuda
0.1.0:prealpha
nvidiacv-cuda
0.2.0:alpha
nvidiacv-cuda
0.2.1:alpha
nvidiacv-cuda
0.3.0:beta
nvidiacv-cuda
0.3.1:beta
nvidiacv-cuda
0.4.0:beta
nvidiacv-cuda
0.5.0:beta
nvidiacv-cuda
0.6.0:beta
nvidiacv-cuda
0.7.0:beta
nvidiacv-cuda
0.8.0:beta
nvidiacv-cuda
0.9.0:beta
𝑥
= Vulnerable software versions