216.73.216.133

CVE-2025-23247

· Published 27/05/2025 17:15 · Modified 28/05/2025 15:01

Labels: CVE-2025-23247 2025-05-27CVE-2025-23247CWE-130[email protected]

Essential information

Published
27/05/2025 17:15
Modified
28/05/2025 15:01
Author
Creator
CVSS
4.4 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N

CVSS metrics

Description

NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the cuobjdump binary, where a failure to check the length of a buffer could allow a user to cause the tool to crash or execute arbitrary code by passing in a malformed ELF file. A successful exploit of this vulnerability might lead to arbitrary code execution.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
nvidia / cuda toolkit cpe:2.3:a:nvidia:cuda_toolkit:*:*:*:*:*:*:*:*

References