CVE-2022-42278

NVIDIA BMC contains a vulnerability in SPX REST API, where an authorized attacker can read and write to arbitrary locations within the memory context of the IPMI server process, which may lead to code execution, denial of service, information disclosure and data tampering.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:nvidia:bmc:*:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:dgx_a100:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-01-13 02:15

Updated : 2024-02-28 19:51


NVD link : CVE-2022-42278

Mitre link : CVE-2022-42278

CVE.ORG link : CVE-2022-42278


JSON object : View

Products Affected

nvidia

  • bmc
  • dgx_a100
CWE
NVD-CWE-noinfo CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer