Lucene search

K
cvelistNvidiaCVELIST:CVE-2020-11616
HistoryOct 29, 2020 - 3:35 a.m.

CVE-2020-11616

2020-10-2903:35:33
nvidia
www.cve.org
1

7.7 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

53.9%

NVIDIA DGX servers, all BMC firmware versions prior to 3.38.30, contain a vulnerability in the AMI BMC firmware in which the Pseudo-Random Number Generator (PRNG) algorithm used in the JSOL package that implements the IPMI protocol is not cryptographically strong, which may lead to information disclosure.

CNA Affected

[
  {
    "product": "NVIDIA DGX Servers",
    "vendor": "NVIDIA",
    "versions": [
      {
        "status": "affected",
        "version": "All DGX-1 with BMC firmware versions prior to 3.38.30"
      }
    ]
  }
]

7.7 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

53.9%

Related for CVELIST:CVE-2020-11616