Intel Gaudi Software Denial-of-Service Vulnerability
Vulnerability
A denial-of-service vulnerability has been identified in Intel Gaudi software versions prior to 1.21.0. This issue arises from uncontrolled resource consumption in user applications, which can be exploited by an authenticated user with low complexity. The vulnerability may be triggered through local access, without special internal knowledge, and requires no user interaction. As a result, the vulnerability could lead to a significant disruption of service availability on the affected system.
Impact
Exploitation of this vulnerability can cause a denial-of-service condition, leading to a high impact on system availability.
Remediation
Users are advised to update Intel Gaudi software to version 1.21.0 or later. The latest version can be downloaded from the Intel Habana Vault.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
