NvidiaCVE-2025-23351
Nvidia BlueField GA: code execution
Critical9.0CVE-2025-23351 · Published Jul 1, 2026
NVIDIA ConnectX and BlueField contain a vulnerability in the command interface where a local user with virtual function (VF) access may cause a write out of bounds by crafted input. A successful exploit of this vulnerability may lead to arbitrary code execution on the device.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| BlueField GA Product | <= All versions prior to 46.3008 | No fix yet |
| BlueField LTS22 Product | <= All versions prior to 35.8002 | No fix yet |
| BlueField LTS23 Product | <= All versions prior to 39.8002 | No fix yet |
| BlueField LTS24 Product | <= All versions prior to 43.8002 | No fix yet |
| ConnectX GA Product | <= All versions prior to 46.3008 | No fix yet |
| ConnectX LTS22 Product | <= All versions prior to 35.8002 | No fix yet |
| ConnectX LTS23 Product | <= All versions prior to 39.8002 | No fix yet |
| ConnectX LTS24 Product | <= All versions prior to 43.8002 | No fix yet |
| ConnectX-4 Product | <= All versions prior to 28.4702 | No fix yet |
| ConnectX-4 LX Product | <= All versions prior to 32.1908 | No fix yet |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-787
More Nvidia advisories
All Nvidia| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Jul 1 | Nvidia AIStore framework: authentication bypass | Critical9.8 | No fix yet |
| Jul 1 | Nvidia Megatron-Bridge: code execution | High7.8 | No fix yet |
| Jul 1 | Nvidia Megatron-Bridge: unsafe deserialization | High7.8 | No fix yet |
| Jul 1 | Nvidia Megatron-Bridge: code execution | High7.8 | No fix yet |
| Jul 1 | Nvidia Megatron-Bridge: unsafe deserialization | High7.8 | No fix yet |
| Jul 1 | Nvidia Megatron-Bridge: code execution | High7.8 | No fix yet |