Insecure DLL loading in CUDA Toolkit - CVE-2025-33229
Published: May 18, 2026
CUDA Toolkit
Detailed vulnerability description
The vulnerability allows a local user to execute arbitrary code.
The vulnerability exists due to uncontrolled search path element in Nsight Monitor when loading DLLs. A local user can place or cause the application to load a malicious DLL to execute arbitrary code.
Arbitrary code execution occurs with the same privileges as the NVIDIA Nsight Visual Studio Edition Monitor application.