CVE-2025-33205: High severity Nvidia NeMo vulnerability
NVIDIA NeMo framework contains a vulnerability in a predefined variable, where an attacker could cause inclusion of functionality from an untrusted control sphere by use of a predefined variable. A successful exploit of this vulnerability may lead to code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-33205?
CVE-2025-33205 has a high severity rating due to its potential to enable code execution through an untrusted control sphere.
How do I fix CVE-2025-33205?
To mitigate CVE-2025-33205, ensure you are using the latest version of the NVIDIA NeMo framework with all security patches applied.
Who is affected by CVE-2025-33205?
Users and developers utilizing the NVIDIA NeMo framework are at risk from CVE-2025-33205.
What kind of attack can exploit CVE-2025-33205?
CVE-2025-33205 can be exploited by attackers to execute arbitrary code by manipulating predefined variables.
When was CVE-2025-33205 disclosed?
CVE-2025-33205 was disclosed in 2025, highlighting a critical vulnerability in the NVIDIA NeMo framework.