Code Execution Vulnerability in NVIDIA NVDebug Tool
CVE-2025-23344

7.3HIGH

Key Information:

Vendor

Nvidia

Vendor
CVE Published:
9 September 2025

What is CVE-2025-23344?

The NVIDIA NVDebug tool has a vulnerability that allows an attacker to execute arbitrary code on the platform host without needing elevated privileges. This issue could lead to various security risks, including unauthorized code execution, potential denial of service, privilege escalation, information disclosure, and data tampering. It is crucial for users to assess their systems for exposure to this vulnerability and apply the necessary patches or mitigations.

Affected Version(s)

NVDebug tool x86_64 or arm64-SBSA architecture systems All versions prior to 1.7.0

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.