CVE-2025-23339: Buffer Overflow
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in cuobjdump where an attacker may cause a stack-based buffer overflow by getting the user to run cuobjdump on a malicious ELF file. A successful exploit of this vulnerability may lead to arbitrary code execution at the privilege level of the user running cuobjdump.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-23339?
CVE-2025-23339 has a high severity rating due to the potential for arbitrary code execution.
How do I fix CVE-2025-23339?
To mitigate CVE-2025-23339, update your NVIDIA CUDA Toolkit to the latest version provided by NVIDIA.
Who is affected by CVE-2025-23339?
CVE-2025-23339 affects all platforms utilizing the NVIDIA CUDA Toolkit that includes the cuobjdump utility.
What is a stack-based buffer overflow in the context of CVE-2025-23339?
In CVE-2025-23339, a stack-based buffer overflow occurs when a malicious ELF file is processed, allowing attackers to overwrite the stack memory.
What are the potential impacts of exploiting CVE-2025-23339?
Exploitation of CVE-2025-23339 may lead to arbitrary code execution with the privileges of the user running the cuobjdump utility.