#VU116170 Heap-based buffer overflow in CUDA Toolkit - CVE-2025-23308
Published: September 29, 2025
CUDA Toolkit
nVidia
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in nvdisasm in the REL section header parsing functionality. A remote attacker can trik a victim to run nvdisasm on a malicious ELF file, trigger a heap-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.