Access Vulnerability in NVIDIA vGPU Software's Virtual GPU Manager
CVE-2025-23285

5.5MEDIUM

Key Information:

Vendor

Nvidia

Vendor
CVE Published:
2 August 2025

What is CVE-2025-23285?

NVIDIA vGPU software exposes a vulnerability in its Virtual GPU Manager, enabling a guest to gain unauthorized access to global resources. If exploited, this flaw could lead to a denial of service, impacting the stability and availability of the virtualized environment. Organizations using affected products should ensure that they apply the necessary patches to mitigate this risk.

Affected Version(s)

GPU Display Drivers R535, R570

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-23285 : Access Vulnerability in NVIDIA vGPU Software's Virtual GPU Manager