CVE-2024-0133

CVSS 3.1 Score 3.4 of 10 (low)

Details

Published Sep 26, 2024
Updated: Oct 2, 2024
CWE ID 367

Summary

CVE-2024-0133 is a vulnerability affecting NVIDIA Container Toolkit versions 1.16.1 and earlier. In its default mode of operation, this toolkit is susceptible to a specially crafted container image that can create empty files on the host file system. This issue does not impact use cases where the Common Container Runtime Interface (CCRI) is employed. A successful exploit of this vulnerability may result in data tampering.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share