CVE-2023-25517: NVIDIA GPU Display Driver

High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a guest OS may be able to control resources for which it is not authorized, which may lead to information disclosure and data tampering.

Affected products

  • NVIDIA GPU Display Driver: before 11.13 (fixed in 11.13); from 13.0, before 13.8 (fixed in 13.8); from 15.0, before 15.3 (fixed in 15.3)

Published 2023-07-04. Last modified 2026-06-17.