CVE-2025-23247: High severity nvidia cuda toolkit vulnerability
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the cuobjdump binary, where a failure to check the length of a buffer could allow a user to cause the tool to crash or execute arbitrary code by passing in a malformed ELF file. A successful exploit of this vulnerability might lead to arbitrary code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-23247?
CVE-2025-23247 is considered a high severity vulnerability due to its potential to allow execution of arbitrary code.
How do I fix CVE-2025-23247?
To fix CVE-2025-23247, it is recommended to update to the latest version of the NVIDIA CUDA Toolkit that addresses this vulnerability.
What components are affected by CVE-2025-23247?
CVE-2025-23247 affects the cuobjdump binary within the NVIDIA CUDA Toolkit on all supported platforms.
What type of attack does CVE-2025-23247 enable?
CVE-2025-23247 could enable an attacker to crash the cuobjdump tool or execute arbitrary code by using a malformed ELF file.
Who is impacted by CVE-2025-23247?
Users and organizations utilizing the affected versions of the NVIDIA CUDA Toolkit could be impacted by CVE-2025-23247.