CVE-2025-23311
BaseFortify
Publication date: 2025-08-06
Last updated on: 2025-08-12
Assigner: NVIDIA Corporation
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| nvidia | triton_inference_server | to 25.07 (exc) |
| linux | linux_kernel | From 5.15.160 (inc) to 5.16 (inc) |
| microsoft | windows | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-121 | A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function). |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability in NVIDIA Triton Inference Server allows an attacker to cause a stack overflow by sending specially crafted HTTP requests. Exploiting this flaw could enable the attacker to execute code remotely, cause denial of service, disclose sensitive information, or tamper with data.
How can this vulnerability impact me? :
The impact of this vulnerability includes the possibility of remote code execution, which could allow an attacker to take control of the affected system. It can also lead to denial of service, making the service unavailable, disclosure of sensitive information, and unauthorized modification of data.