CNNVD-202509-3642 Information

CNNVD ID

CNNVD-202509-3642

CVE-2024-21927

  • CNNVD Published: 2025-09-23

Description (Chinese)

AMD Instinct MI300X accelerators是美国超威半导体(AMD)公司的一款数据中心级GPU加速卡。 AMD Instinct MI300X accelerators存在安全漏洞,该漏洞源于输入验证不当,可能导致特权攻击者使用特制Redfish API命令使服务进程崩溃,导致拒绝服务。

Description (English)

AMD Institute MI300X accelerators are a data centre-level GPU accelerator at AMD. AMD Insurance MI300X accelerators have a security loophole, which stems from inappropriate input validation, which may lead to a breakdown of service processes and denial of service by the privileged assailant using a special Redfish API order.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Ametys

Published

2025-09-23

Last Modified

2026-02-24

References

https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-6016.html

Patch

https://www.amd.com/en/resources/product-security/bulletin/AMD-SB-6016.html

Share on: