Trend Detects NVIDIA AI Toolkit Vulnerability

September 27, 2024 at 03:56PM NVIDIA released an update to fix a critical vulnerability in its NVIDIA Container Toolkit, affecting versions up to v1.16.1. The CVE-2024-0132 vulnerability, with a CVSS v3.1 rating of 9.0, could lead to various threats if exploited. Trend Vision Oneā„¢ offers proactive protection and scanning for this vulnerability to prevent attacks. … Read more

First to Detect AI Threats, Including NVIDIA-powered Systems

September 27, 2024 at 01:14PM NVIDIA released updates to fix a critical vulnerability in its NVIDIA Container Toolkit (CVE-2024-0132), impacting AI infrastructure and data. Exploitation could lead to code execution, denial of service, privilege escalation, and data tampering. Trend Vision One provides proactive protection, detecting and mitigating threats until patches can be applied. The vulnerability … Read more

Delivering Proactive Protection Against Critical Threats to NVIDIA-powered AI Systems

September 27, 2024 at 11:18AM NVIDIA released updates to fix a critical vulnerability in its NVIDIA Container Toolkit, impacting AI infrastructure. CVE-2024-0132 affects all Toolkit versions up to v1.16.1, allowing threat actors to execute arbitrary commands with root privileges. Trend Vision One offers proactive protection against exploitation, detecting CVE-2024-0132 through Attack Surface Risk Management capabilities. … Read more

Critical NVIDIA Container Toolkit Vulnerability Could Grant Full Host Access to Attackers

September 27, 2024 at 02:48AM A security flaw in NVIDIA Container Toolkit (CVE-2024-0132) allows threat actors to escape container confines and access the underlying host. The vulnerability affects NVIDIA Container Toolkit v1.16.1 and earlier, and NVIDIA GPU Operator up to 24.6.1. Addressed in versions v1.16.2 and 24.6.2, the flaw poses potential risks and requires immediate … Read more

Patch now: Critical Nvidia bug allows container escape, complete host takeover

September 26, 2024 at 05:52PM Nvidia’s Container Toolkit has a critical bug, CVE-2024-0132, rated 9.0/10 in severity, allowing an attacker to escape containers and take over the host. Nvidia issued a fix with versions v1.16.2 and v24.6.2. The vulnerability affects cloud and AI workloads, impacting 33% of cloud environments. Wiz’s security researchers found and disclosed … Read more

Critical Nvidia Container Flaw Exposes Cloud AI Systems to Host Takeover

September 26, 2024 at 01:12PM Nvidia’s Container Toolkit is vulnerable to a TOCTOU flaw (CVE-2024-0132) that could allow attackers to escape containers and take control of the host system, exposing cloud environments to code execution and data tampering. The flaw affects over 35% of cloud environments using Nvidia GPUs, posing a significant threat to AI … Read more