CVE-2025-23273: NVIDIA Cuda Toolkit

Medium severity, CVSS 4.7. EPSS: 0.1% chance of exploitation in the next 30 days.

NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvJPEG where a local authenticated user may cause a divide by zero error by submitting a specially crafted JPEG file. A successful exploit of this vulnerability may lead to denial of service.

Affected products

  • NVIDIA Cuda Toolkit: before 13.0.0 (fixed in 13.0.0)
  • NVIDIA Nvjpeg: affected versions not specified

Published 2025-09-24. Last modified 2026-06-17.