CVE-2025-23253: Low severity nvidia nvcontainer vulnerability
NVIDIA NvContainer service for Windows contains a vulnerability in its usage of OpenSSL, where an attacker could exploit a hard-coded constant issue by copying a malicious DLL in a hard-coded path. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-23253?
CVE-2025-23253 has a high severity level due to its potential for code execution and denial of service.
How do I fix CVE-2025-23253?
To fix CVE-2025-23253, ensure that you update the NVIDIA NvContainer service to the latest version provided by NVIDIA.
What are the potential impacts of CVE-2025-23253?
CVE-2025-23253 can lead to potential code execution, denial of service, and escalation of privileges if exploited.
Who is affected by CVE-2025-23253?
CVE-2025-23253 affects users of the NVIDIA NvContainer service that utilizes OpenSSL.
What is the cause of CVE-2025-23253?
CVE-2025-23253 is caused by the usage of a hard-coded constant in the NVIDIA NvContainer service's implementation of OpenSSL.