Nvidia Bluefield Lts22 vulnerabilities
4 known vulnerabilities affecting nvidia/bluefield_lts22.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2025-23299MEDIUMCVSS 6.7vAll versions prior to 35.45542025-10-22
CVE-2025-23299 [MEDIUM] CWE-787 CVE-2025-23299: NVIDIA Bluefield and ConnectX contain a vulnerability in the management interface that could allow a
NVIDIA Bluefield and ConnectX contain a vulnerability in the management interface that could allow a malicious actor with high privilege access to execute arbitrary code.
cvelistv5nvd
CVE-2025-23256HIGHCVSS 8.7vAll versions prior to 35.45542025-09-04
CVE-2025-23256 [HIGH] CWE-863 CVE-2025-23256: NVIDIA BlueField contains a vulnerability in the management interface, where an attacker with local
NVIDIA BlueField contains a vulnerability in the management interface, where an attacker with local access could cause incorrect authorization to modify the configuration. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, and data tampering.
cvelistv5nvd
CVE-2024-0106HIGHCVSS 8.7vAll versions prior to xx.35.40302024-11-01
CVE-2024-0106 [HIGH] CWE-274 CVE-2024-0106: NVIDIA ConnectX Host Firmware for the BlueField Data Processing Unit (DPU) contains a vulnerability
NVIDIA ConnectX Host Firmware for the BlueField Data Processing Unit (DPU) contains a vulnerability where an attacker may cause an improper handling of insufficient privileges issue. A successful exploit of this vulnerability may lead to denial of service, data tampering, and limited information disclosure.
cvelistv5nvd
CVE-2024-0105HIGHCVSS 8.9vAll versions prior to xx.35.40302024-11-01
CVE-2024-0105 [HIGH] CWE-274 CVE-2024-0105: NVIDIA ConnectX Firmware contains a vulnerability where an attacker may cause an improper handling o
NVIDIA ConnectX Firmware contains a vulnerability where an attacker may cause an improper handling of insufficient privileges issue. A successful exploit of this vulnerability may lead to denial of service, data tampering, and limited information disclosure.
cvelistv5nvd