GPU VulnDB

Database/NVIDIA / GPU stack

NVIDIA License System - Delegated Licensing Service (DLS): SQL injection in the DLS appliance reaching a high integrity

CVE-2025-23292NVIDIA / GPU stackcurated

Impact

SQL injection in the DLS appliance reaching a high integrity impact and partial denial of service in the UI - an authenticated attacker can alter licensing records.

Who can reach it

Adjacent network, high privileges, user interaction. An admin-level account on the licensing appliance.

What to do

Update the DLS appliance per bulletin 5705 and review licensing records for tampering. Cost: appliance restart.

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.