NVIDIA CUDA Toolkit
cpe:2.3:a:nvidia:cuda_toolkit:*:*:*:*:*:*:*
- < 13.0
A heap-based buffer overflow vulnerability has been identified in the NVIDIA CUDA Toolkit's nvdisasm component, present in all versions prior to 13.0. This vulnerability allows an attacker to execute arbitrary code at the privilege level of the user running nvdisasm, by manipulating the user into processing a malicious ELF file with the tool.
Exploitation of this vulnerability could lead to arbitrary code execution, with the executed code running at the same privilege level as the user who initiated nvdisasm.
Users are advised to upgrade to NVIDIA CUDA Toolkit 13.0 or later.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.