Information Disclosure Vulnerability in NVIDIA GPU Display Driver for Windows
CVE-2025-23288

3.3LOW

Key Information:

Vendor

Nvidia

Vendor
CVE Published:
2 August 2025

What is CVE-2025-23288?

The NVIDIA GPU Display Driver for Windows has a vulnerability that allows an attacker with local unprivileged access to potentially expose sensitive system information. This security flaw can be exploited to lead to unauthorized information disclosure, raising concerns for users relying on the NVIDIA drivers for their systems. It is essential for users to stay updated with the latest security patches provided by NVIDIA to mitigate any risks associated with this vulnerability.

Affected Version(s)

GPU Display Drivers R535, R570, R575

References

CVSS V3.1

Score:
3.3
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-23288 : Information Disclosure Vulnerability in NVIDIA GPU Display Driver for Windows