CVE-2025-23247: NVIDIA Cuda Toolkit
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the cuobjdump binary, where a failure to check the length of a buffer could allow a user to cause the tool to crash or execute arbitrary code by passing in a malformed ELF file. A successful exploit of this vulnerability might lead to arbitrary code execution.
Affected products
- NVIDIA Cuda Toolkit: before 12.9.0 (fixed in 12.9.0)
Published 2025-05-27. Last modified 2026-06-17.