CVE-2025-23277
BaseFortify
Publication date: 2025-08-02
Last updated on: 2025-08-04
Assigner: NVIDIA Corporation
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| nvidia | display_driver | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-284 | The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in the NVIDIA Display Driver for Linux and Windows, specifically in the kernel mode driver. It allows an attacker to access memory outside the normal bounds, which is not permitted under usual circumstances. Exploiting this flaw could enable the attacker to cause denial of service, tamper with data, or disclose sensitive information.
How can this vulnerability impact me? :
If exploited, this vulnerability could lead to denial of service, meaning your system or display driver could crash or become unavailable. It could also allow an attacker to tamper with data or disclose sensitive information, potentially compromising system integrity and confidentiality.