PT-2025-17587 · Openssl+1 · Openssl+1

Published

2025-04-22

·

Updated

2025-04-23

·

CVE-2025-23253

CVSS v3.1

2.5

Low

VectorAV:L/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions NVIDIA NvContainer service for Windows (affected versions not specified)
Description The issue is related to the usage of OpenSSL in the NVIDIA NvContainer service for Windows, where a hard-coded constant can be exploited by an attacker. This can be done by copying a malicious DLL in a hard-coded path. A successful exploit might lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

LPE

Weakness Enumeration

Related Identifiers

BDU:2025-12851
CVE-2025-23253

Affected Products

Nvidia Nvcontainer
Openssl