CVE-2023-25523: Null Pointer Dereference
Published Jul 3, 2023
·Updated
NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in the nvdisasm binary file, where an attacker may cause a NULL pointer dereference by providing a user with a malformed ELF file. A successful exploit of this vulnerability may lead to a partial denial of service.
Affected Software
3 affected components
Nvidia CUDA Toolkit<12.2
Linux Linux kernel
Microsoft Windows
Event History
Jul 3, 2023
CVE Published
via MITRE·11:27 PM
Data Sourced
via MITRE·11:27 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-25523.
2
What is the affected software?
The affected software is NVIDIA CUDA Toolkit version up to exclusive 12.2.
3
What is the severity level of CVE-2023-25523?
The severity level of CVE-2023-25523 is low, with a severity value of 3.3.
4
How can an attacker exploit this vulnerability?
An attacker can exploit this vulnerability by providing a user with a malformed ELF file, causing a NULL pointer dereference in the nvdisasm binary file.
5
What is the potential impact of this vulnerability?
The potential impact of this vulnerability is a partial denial of service.