Rewterz

Rewterz Threat Alert – DanaBot Trojan – Active IOCs

August 9, 2021
Rewterz

Rewterz Threat Advisory –Multiple Dell EMC NetWorker Security Vulnerabilities

August 9, 2021

Rewterz Threat Advisory –CVE-2021-34398 – NVIDIA Data Center GPU Manager Security Vulnerability

Severity

High

Analysis Summary

CVE-2021-34398

NVIDIA DCGM contains a vulnerability in the DIAG module where any user can inject shared libraries into the DCGM server, which is usually running as root, which may lead to privilege escalation, total loss of confidentiality and integrity, and complete denial of service.

Impact

  • Privilege Escalation
  • Denial of Service

Affected Vendors

NVIDIA

Affected Products

  • DCGM versions up to and including 2.2.8

Remediation

Refer to vendor’s advisory for the list of upgraded patches.

https://nvidia.custhelp.com/app/answers/detail/a_id/5219

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.