CVE 3.3 LOW

CVE-2025-23308_CVE-2025-23308

3.3 / 10
LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

Description

NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where an attacker may cause a heap-based buffer overflow by getting the user to run nvdisasm on a malicious ELF file. A successful exploit of this vulnerability may lead to arbitrary code execution at the privilege level of the user running nvdisasm.

Basic Information

ID CVE-2025-23308
Source nvidia
Published Sep 24, 2025 at 13:12
Modified Sep 24, 2025 at 14:09

Affected Product

Vendor NVIDIA
Product NVIDIA CUDA Toolkit
Version All versions prior to CUDA Toolkit 13.0
Affected Versions NVIDIA NVIDIA CUDA Toolkit All versions prior to CUDA Toolkit 13.0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.