NVIDIA CUDA Toolkit
cpe:2.3:a:nvidia:cuda_toolkit:*:*:*:*:*:*:*
- < 13.0
A stack-based buffer overflow vulnerability has been identified in the NVIDIA CUDA Toolkit cuobjdump component, present in all versions prior to CUDA Toolkit 13.0. This vulnerability allows an attacker to execute arbitrary code at the privilege level of the user running cuobjdump, by manipulating the user to process a malicious ELF file. The issue arises from improper handling of the file, leading to the potential for exploitation.
Exploitation of this vulnerability could result in arbitrary code execution, with the executed code running at the same privilege level as the user who invoked cuobjdump.
Users are advised to upgrade to NVIDIA CUDA Toolkit 13.0 or later. The latest version can be downloaded from the CUDA Toolkit Downloads page.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.