CVE-2025-23242: NVIDIA Riva

Critical severity, CVSS 9.8. EPSS: 2% chance of exploitation in the next 30 days.

NVIDIA Riva contains a vulnerability where a user could cause an improper access control issue. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, denial of service, or information disclosure.

Affected products

  • NVIDIA Riva: before 2.19.0 (fixed in 2.19.0)

Published 2025-03-11. Last modified 2026-06-17.