Database/Control plane, storage & DevOps
OpenVINO Model Server: Input-validation flaw in OpenVINO Model Server reachable without authentication
CVE-2023-31203Control plane, storage & DevOpscurated
Impact
Input-validation flaw in OpenVINO Model Server reachable without authentication. Same exposure profile as the later Model Server issues - it sits on the inference request path.
Who can reach it
Anything that can reach the serving endpoint.
What to do
Upgrade to the 2022.3 or later Model Server build shipped with OpenVINO 2023. Container update and rolling restart.
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.