AIS Operator (AIStore): Improper access control on cluster storage
CVSS 5.0CVE-2025-23260NVIDIA / GPU stackcurated
Impact
Improper access control on cluster storage
Who can reach it
Tenant with cluster network access
What to do
Upgrade the operator Helm chart
References
Related entries
- NVIDIA GPU Display Driver - Linux kernel module (nvidia.ko): A null-pointer dereference in a Linux driver kernelCVE-2025-23332 · NVIDIA GPU Display Driver - Linux kernel module (nvidia.ko)Medium
- NVIDIA Triton Inference Server: An out-of-bounds read triggered by releasing a shared memory region while it is stillCVE-2024-0116 · NVIDIA Triton Inference ServerMedium
- Triton Inference Server: DoS (integer overflow)CVE-2024-53880 · Triton Inference ServerMedium
- Triton Inference Server: Unauthorized file access via path traversalCVE-2026-24147 · Triton Inference ServerMedium
- NVIDIA Linux GPU Display Driver, UVM driver (nvidia-uvm.ko): A race in the Unified Virtual Memory kernel module letsCVE-2020-5967 · NVIDIA Linux GPU Display Driver, UVM driver (nvidia-uvm.ko)Medium
- NVIDIA Windows GPU Display Driver (nvlddmkm.sys): Improper input validation in the escape handler under specificCVE-2021-1117 · NVIDIA Windows GPU Display Driver (nvlddmkm.sys)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.