cbcvebase.
CVE-2023-25523
published 2023-07-04

CVE-2023-25523: NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in the nvdisasm binary file, where an attacker may cause a NULL pointer dereference by…

PriorityP47low3.3CVSS 3.1
AVLACLPRNUIRSUCNINAL
EPSS
0.23%
13.5th percentile
NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in the nvdisasm binary file, where an attacker may cause a NULL pointer dereference by providing a user with a malformed ELF file. A successful exploit of this vulnerability may lead to a partial denial of service.

Affected

3 ranges
VendorProductVersion rangeFixed in
debiannvidia-cuda-toolkit< nvidia-cuda-toolkit 12.2.0-3 (forky)nvidia-cuda-toolkit 12.2.0-3 (forky)
nvidiacuda_toolkit< 12.212.2
nvidiacuda_toolkit

CVSS provenance

nvdv3.13.3LOWCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
osv3.3LOW
vendor_debian3.3LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.