suse · CVE-2024-0134

Quick triage

Priority: low Published: 2024-11-07 00:35:49 UTC Updated: 2025-12-23 01:52:07 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2024-0134 severity low: SUSE including 1 source package names (nvidia-container-toolkit-1.18.0-150200.5.17.1), 17 product×package rows across 17 product lines (SUSE Enterprise Storage 7.1, SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS, … (17 product lines)): Fixed 17.

Description:

NVIDIA Container Toolkit and NVIDIA GPU Operator for Linux contain a UNIX vulnerability where a specially crafted container image can lead to the creation of unauthorized files on the host. The name and location of the files cannot be controlled by an attacker. A successful exploit of this vulnerability might lead to data tampering.

cvelogic Threat Intelligence