CVE-2025-23266

NVIDIA Container Toolkit for all platforms contains a vulnerability in some hooks used to initialize the container, where an attacker could execute arbitrary code with elevated permissions. A successful exploit of this vulnerability might lead to escalation of privileges, data tampering, information disclosure, and denial of service.
CVSS

No CVSS.

Configurations

No configuration.

History

16 Aug 2025, 22:15

Type Values Removed Values Added
References
  • () https://kidbomb.github.io/posts/nvidia-container-escape-cve-2025-23266-part-2/ -

08 Aug 2025, 19:15

Type Values Removed Values Added
CWE CWE-426
References
  • () https://www.wiz.io/blog/nvidia-ai-vulnerability-cve-2025-23266-nvidiascape -
  • () https://kidbomb.github.io/posts/nvidia-container-escape-cve-2025-23266/ -
  • () https://news.ycombinator.com/item?id=44818412 -

17 Jul 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-17 20:15

Updated : 2025-08-16 22:15


NVD link : CVE-2025-23266

Mitre link : CVE-2025-23266


JSON object : View

Products Affected

No product.

CWE

No CWE.