OS Command Injection Vulnerability in NVIDIA Nsight Systems for Linux
CVE-2025-33230

7.3HIGH

Key Information:

Vendor

Nvidia

Vendor
CVE Published:
20 January 2026

What is CVE-2025-33230?

NVIDIA Nsight Systems for Linux features a vulnerability within its .run installer that allows for OS command injection. By providing a malicious string during the installation process, an attacker can manipulate the system. Exploiting this vulnerability may grant the attacker elevated privileges, enabling unauthorized code execution, modification of data, service disruptions, and potential information leaks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

CUDA Toolkit Windows All versions prior to CUDA Toolkit 13.1

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.