CVE-2024-0132 - NVIDIA Container Toolkit TOCTOU File System Vulnerability

3 weeks ago 13
ARTICLE AD BOX
CVE ID : CVE-2024-0132
Published : Sept. 26, 2024, 6:15 a.m. | 24 minutes ago
Description : NVIDIA Container Toolkit 1.16.1 or earlier contains a Time-of-check Time-of-Use (TOCTOU) vulnerability when used with default configuration where a specifically crafted container image may gain access to the host file system. This does not impact use cases where CDI is used. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Severity: 9.0 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article