TROYANOSYVIRUS
Back to CVEs

CVE-2023-25513

MEDIUM
5.3

Description

NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in cuobjdump, where an attacker may cause an out-of-bounds read by tricking a user into running cuobjdump on a malformed input file. A successful exploit of this vulnerability may lead to limited denial of service, code execution, and limited information disclosure.

CVE Details

CVSS v3.1 Score5.3
SeverityMEDIUM
CVSS VectorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Attack VectorLOCAL
ComplexityLOW
Privileges RequiredNONE
User InteractionREQUIRED
Published4/22/2023
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

linux:linux_kernelmicrosoft:windowsnvidia:cuda_toolkit

Weaknesses (CWE)

CWE-125CWE-125

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.