NVIDIA Container Toolkit for all platforms contains a vulnerability in the update-ldcache hook, where an attacker could cause a link following by using a specially crafted container image. A successful exploit of this vulnerability might lead to data tampering and denial of service.
No PoCs from references.
- https://github.com/EGI-Federation/SVG-advisories
- https://github.com/placebeyondtheclouds/gpu-home-server
- https://github.com/ssst0n3/ssst0n3
- https://github.com/tanjiti/sec_profile