GPU VulnDB

Database/NVIDIA / GPU stack

BlueField (GA firmware): out-of-bounds write in the VF command interface allows code execution on the DPU

CVSS 9.0CVE-2025-23350NVIDIA / GPU stack+1 more CVEscurated

Impact

A local user with virtual-function access can send crafted command-interface input that writes out of bounds, giving arbitrary code execution on the DPU firmware - below the host OS and outside tenant visibility. NVIDIA split this across 2 ids (CVE-2025-23350, CVE-2025-23351) in bulletin 5699; both are the same class of flaw in the same interface with the same fix. Highest risk where VFs are handed to untrusted tenants; where no VFs are exposed, only admin/hypervisor-level callers can reach it.

Who can reach it

Privileged network attacker on the DPU management path

What to do

Flash the fixed BlueField GA firmware from NVIDIA bulletin 5699 out-of-band once - it covers both ids. The DPU reset drops tenant networking, so drain the node first. Until then, stop assigning VFs to untrusted tenants.

Also covers 1 CVE

The vendor assigned a separate id to each affected code path. They share this advisory, this score and this fix, so they are one entry here.

CVE-2025-23351

References

Related entries

All NVIDIA / GPU stack entries

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.