PT-2025-39255 · Nvidia+2 · Nvidia Cuda Toolkit+3

Published

2025-09-22

·

Updated

2025-10-31

·

CVE-2025-23308

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NVIDIA CUDA Toolkit (affected versions not specified)
Description The NVIDIA CUDA Toolkit contains an issue in the nvdisasm component. An attacker can trigger a heap-based buffer overflow by providing a malicious ELF file to nvdisasm. Successful exploitation may result in arbitrary code execution with the privileges of the user running nvdisasm.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-12628
CVE-2025-23308

Affected Products

Debian
Nvidia Cuda Toolkit
Red Os
Nvdisasm