New GPU Rowhammer Attacks Seize Full System Control

New GPU Rowhammer Attacks Seize Full System Control
Three new attacks — GDDRHammer, GeForge, and GPUBreach — demonstrate how malicious users can exploit Rowhammer vulnerabilities in Nvidia GPU memory to gain complete root control of host machines. The attacks induce bit flips in GDDR memory, manipulate GPU page tables, and chain into CPU-side exploitation, achieving full system compromise. Two attacks require IOMMU to be disabled, which is the default in most BIOS settings. A third, GPUBreach, works even with IOMMU enabled by exploiting memory-safety bugs in Nvidia drivers. The findings are especially significant given that high-performance GPUs are widely shared across cloud environments.
Read the original article →