NVIDIA DGX A100 SBIOS contains a vulnerability where a user may cause a dynamic variable evaluation by local access. A successful exploit of this vulnerability may lead to denial of service.
In a language where the user can influence the name of a variable at runtime, if the variable names are not controlled, an attacker can read or write to arbitrary variables, or access arbitrary functions.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Dgx_a100_firmware | Nvidia | * | 1.25 (excluding) |