CVE-2025-33216

MEDIUM

Nvidia Snap-4 Container - Denial of Service

Title source: rule
STIX 2.1

Description

NVIDIA SNAP-4 Container contains a vulnerability in the configuration interface where an attacker on a VM may cause an incorrect calculation of buffer size by sending crafted configurations. A successful exploit of this vulnerability may lead to crash of the SNAP service, causing denial of service of the storage service to the host.

Scores

CVSS v3 6.8
EPSS 0.0001
EPSS Percentile 0.8%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-131
Status published
Products (1)
NVIDIA/SNAP-4 Container All versions prior to SNAP-4.9.0 and SNAP-4.5.5
Published Mar 24, 2026
Tracked Since Mar 25, 2026