7.3
/ 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Description
NVIDIA DOCA contains a vulnerability in the collectx-dpeserver Debian package for arm64 that could allow an attacker with low privileges to escalate privileges. A successful exploit of this vulnerability might lead to escalation of privileges.
Basic Information
ID
CVE-2025-23258
Source
nvidia
Published
Sep 4, 2025 at 15:51
Affected Product
Vendor
NVIDIA
Product
NVIDIA DOCA with collectx-dpeserver
Version
All 2.5 versions prior to 2.5.4
Affected Versions
NVIDIA NVIDIA DOCA with collectx-dpeserver All 2.5 versions prior to 2.5.4
NVIDIA NVIDIA DOCA with collectx-dpeserver All 2.9 versions prior to 2.9.3
NVIDIA NVIDIA DOCA with collectx-dpeserver All 2.10 versions
NVIDIA NVIDIA DOCA with collectx-dpeserver All 2.9 versions prior to 2.9.3
NVIDIA NVIDIA DOCA with collectx-dpeserver All 2.10 versions