Description
NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where a user may cause an out-of-bounds write by running nvdisasm on a malicious ELF file. A successful exploit of this vulnerability may lead to denial of service.
Problem types
CWE-129 Improper Validation of Array Index
Product status
All versions prior to CUDA Toolkit 13.0
References
nvd.nist.gov/vuln/detail/CVE-2025-23338
www.cve.org/CVERecord?id=CVE-2025-23338
nvidia.custhelp.com/app/answers/detail/a_id/5661