CVE-2024-0134
05.11.2024, 19:15
NVIDIA Container Toolkit and NVIDIA GPU Operator for Linux contain a UNIX vulnerability where a specially crafted container image can lead to the creation of unauthorized files on the host. The name and location of the files cannot be controlled by an attacker. A successful exploit of this vulnerability might lead to data tampering.
Vendor | Product | Version |
---|---|---|
nvidia | nvidia_container_toolkit | 𝑥 < 1.17 |
nvidia | nvidia_gpu_operator | 𝑥 < 24.9.0 |
𝑥
= Vulnerable software versions