NVIDIA SNAP-4 Container VIRTIO-BLK Component Out-of-Range Pointer Vulnerability Leading to Denial-of-Service

Vulnerability

A vulnerability exists in the VIRTIO-BLK component of NVIDIA SNAP-4 Container, where a malicious guest VM can exploit out-of-range pointer offsets by sending crafted messages. This exploitation may cause a denial-of-service condition on the DPA, disrupting storage availability for other VMs.

Impact

Exploitation leads to a denial-of-service condition on the DPA, causing storage unavailability for other VMs.

Remediation

Users can upgrade to NVIDIA SNAP-4.9.1 or SNAP-4.5.5 to address this vulnerability.

Added: Mar 24, 2026, 9:47 PM
Updated: Mar 24, 2026, 9:47 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.8
exploitability
3.1
remediation
0.0
relevance
4.6
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.