Cumulus Linux: Sensitive data exposure on the switch
CVSS 5.5CVE-2025-23261NVIDIA / GPU stackcurated
Impact
Sensitive data exposure on the switch
Who can reach it
Authenticated switch user
What to do
Upgrade Cumulus Linux; rolling switch upgrade
References
Related entries
- vGPU Manager: Local privesc via file permissionsCVE-2025-23285 · vGPU ManagerMedium
- NVIDIA GPU Display Driver - Linux kernel module (nvidia.ko): Allocating a specific GPU memory resource drivesCVE-2025-23300 · NVIDIA GPU Display Driver - Linux kernel module (nvidia.ko)Medium
- NVIDIA GPU Display Driver - Linux kernel module (nvidia.ko): A null-pointer dereference in the Linux display driverCVE-2025-23330 · NVIDIA GPU Display Driver - Linux kernel module (nvidia.ko)Medium
- Intel Gaudi software suite (SynapseAI stack): An authenticated local user can drive the Gaudi software stackCVE-2025-27249 · Intel Gaudi software suite (SynapseAI stack)Medium
- NVIDIA Jetson Linux / IGX OS (NvMap): NvMap does not track memory allocations correctly, so one unprivileged processCVE-2025-33177 · NVIDIA Jetson Linux / IGX OS (NvMap)Medium
- GPU Display Driver: DoS (null deref)CVE-2025-33237 · GPU Display DriverMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.