CVE-2025-23247

MEDIUM

NVIDIA CUDA Toolkit - Buffer Overflow

Title source: llm

Description

NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the cuobjdump binary, where a failure to check the length of a buffer could allow a user to cause the tool to crash or execute arbitrary code by passing in a malformed ELF file. A successful exploit of this vulnerability might lead to arbitrary code execution.

Exploits (2)

nomisec WORKING POC 3 stars
by SpiralBL0CK · poc
https://github.com/SpiralBL0CK/CVE-2025-23247
github SCANNER 2 stars
by adminlove520 · pythonpoc
https://github.com/adminlove520/CVE-Poc_All_in_One/tree/main/2025/CVE-2025-23247

Scores

CVSS v3 4.4
EPSS 0.0007
EPSS Percentile 21.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N

Details

CWE
CWE-130
Status published
Products (1)
nvidia/cuda_toolkit < 12.9.0
Published May 27, 2025
Tracked Since Feb 18, 2026