CVE-2025-23266

CWE-4269 documents7 sources
Severity
9.0CRITICAL
EPSS
0.1%
top 79.44%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 17
Latest updateOct 23

Description

NVIDIA Container Toolkit for all platforms contains a vulnerability in some hooks used to initialize the container, where an attacker could execute arbitrary code with elevated permissions. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, information disclosure, and denial of service.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:HExploitability: 2.3 | Impact: 6.0

Affected Packages5 packages

CVEListV5nvidia/container_toolkitNVIDIA Container Toolkit All versions up to and including 1.17.7 (CDI mode only for versions prior to 1.17.5), NVIDIA GPU Operator All versions up to and including 25.3.0 (CDI mode only for versions prior to 25.3.0)+1

🔴Vulnerability Details

4
OSV
NVIDIA Container Toolkit for all platforms contains an Untrusted Search Path in github.com/NVIDIA/gpu-operator2025-10-23
OSV
NVIDIA Container Toolkit for all platforms contains an Untrusted Search Path2025-07-17
CVEList
CVE-2025-23266: NVIDIA Container Toolkit for all platforms contains a vulnerability in some hooks used to initialize the container, where an attacker could execute ar2025-07-17
GHSA
NVIDIA Container Toolkit for all platforms contains an Untrusted Search Path2025-07-17

📋Vendor Advisories

2
Red Hat
nvidia-container-toolkit: Privilege Escalation via Hook Initialization in NVIDIA Container Toolkit2025-07-17
Microsoft
NVIDIA Container Toolkit for all platforms contains a vulnerability in some hooks used to initialize the container, where an attacker could execute arbitrary code with elevated permissions. A successf2025-07-08

🕵️Threat Intelligence

2
Wiz
NVIDIAScape - NVIDIA AI Vulnerability (CVE-2025-23266) | Wiz Blog2025-07-17
Wiz
NVIDIAScape - NVIDIA AI Vulnerability (CVE-2025-23266) | Wiz Blog2025-07-17
CVE-2025-23266 (CRITICAL CVSS 9) | NVIDIA Container Toolkit for all pl | cvebase.io