CVE-2024-0105: NVIDIA Bluefield 1
High severity, CVSS 8.9. EPSS: 0.3% chance of exploitation in the next 30 days.
NVIDIA ConnectX Firmware contains a vulnerability where an attacker may cause an improper handling of insufficient privileges issue. A successful exploit of this vulnerability may lead to denial of service, data tampering, and limited information disclosure.
Affected products
- NVIDIA Bluefield 1: before 18.31.1014 (fixed in 18.31.1014)
- NVIDIA Bluefield Ga
- NVIDIA Bluefield LTS22
- NVIDIA Bluefield LTS23
- NVIDIA CONNECTX4: before 12.28.2302 (fixed in 12.28.2302)
- NVIDIA CONNECTX4 Lx
- NVIDIA Connectx Ga
- NVIDIA Connectx LTS22
- NVIDIA Connectx LTS23
Published 2024-11-01. Last modified 2026-06-17.