GPU Display Driver: Access-control bypass
CVSS 7.3CVE-2025-23277NVIDIA / GPU stackcurated
Impact
Access-control bypass -> privesc
Who can reach it
Any tenant with a container
What to do
Driver upgrade; drain + reboot node
Fleet impact
How widespread
Universal - Linux and Windows driver
Cost to remediate
node-reboot
Why it hits the whole fleet
Out-of-bounds memory access in kernel mode from a local tenant: cheap denial of service against a whole GPU node
References
Related entries
- GPU Display Driver: Local privesc / data tampering (missing access control)CVE-2023-0181 · GPU Display DriverHigh
- GPU Display Driver: Local privesc (kernel buffer overflow)CVE-2023-0183 · GPU Display DriverHigh
- GPU Display Driver: Local privesc / data tampering (OOB write)CVE-2023-0191 · GPU Display DriverHigh
- GPU Display Driver: Local privesc / data tampering (OOB write)CVE-2024-0074 · GPU Display DriverHigh
- GPU Display Driver: Local privesc (kernel driver buffer overflow)CVE-2024-0150 · GPU Display DriverHigh
- GPU Display Driver: Local privesc (OOB write)CVE-2025-23278 · GPU Display DriverHigh
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.