PT-2025-46406 · Gaudi · Gaudi

Published

2025-11-11

·

Updated

2025-11-11

·

CVE-2025-27249

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Gaudi software versions prior to 1.21.0
Description Some Gaudi software is subject to uncontrolled resource consumption within Ring 3: User Applications, potentially leading to a denial of service. A system software adversary with authenticated user access and a low complexity attack may trigger this issue. The vulnerability can be exploited via local access without requiring special internal knowledge or user interaction. The issue may impact the availability of the vulnerable system.
Recommendations Update to version 1.21.0 or later.

Fix

DoS

Resource Exhaustion

Weakness Enumeration

Related Identifiers

CVE-2025-27249

Affected Products

Gaudi