CVE Tools

Nvidia Cuda Toolkit

45 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Nvidia Cuda Toolkit, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.

Nvidia Cuda Toolkit CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Nvidia Cuda Toolkit CVEs per month
MonthCVEs
2024-103
2024-110
2024-120
2025-010
2025-0210
2025-030
2025-040
2025-051
2025-060
2025-070
2025-080
2025-0912
2025-100
2025-110
2025-120
2026-012
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 45 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • High37%
  • Medium1227%
  • Low3067%

Latest CVEs

The 15 most recently published vulnerabilities affecting Nvidia Cuda Toolkit.

  1. CVE-2025-33231NVIDIA Nsight Systems for Windows contains a vulnerability in the application’s DLL loading mechanism where an attacker could cause an uncontrolled search path element by exploiting insecure DLL ...6.7
  2. CVE-2025-33230NVIDIA Nsight Systems for Linux contains a vulnerability in the .run installer, where an attacker could cause an OS command injection by supplying a malicious string to the installation path. A suc...7.3
  3. CVE-2025-23346NVIDIA CUDA Toolkit contains a vulnerability in cuobjdump, where an unprivileged user can cause a NULL pointer dereference. A successful exploit of this vulnerability may lead to a limited denial ...3.3
  4. CVE-2025-23340NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the nvdisasm binary where a user may cause an out-of-bounds read by passing a malformed ELF file to nvdisasm. A successful exploit ...3.3
  5. CVE-2025-23339NVIDIA CUDA Toolkit for all platforms contains a vulnerability in cuobjdump where an attacker may cause a stack-based buffer overflow by getting the user to run cuobjdump on a malicious ELF file. A...3.3
  6. CVE-2025-23338NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where a user may cause an out-of-bounds write by running nvdisasm on a malicious ELF file. A successful exploit of this vu...3.3
  7. CVE-2025-23308NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvdisasm where an attacker may cause a heap-based buffer overflow by getting the user to run nvdisasm on a malicious ELF file. A su...3.3
  8. CVE-2025-23275NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvJPEG where a local authenticated user may cause a GPU out-of-bounds write by providing certain image dimensions. A successful ex...4.2
  9. CVE-2025-23274NVIDIA nvJPEG contains a vulnerability in jpeg encoding where a user may cause an out-of-bounds read by providing a maliciously crafted input image with dimensions that cause integer overflows in a...4.5
  10. CVE-2025-23273NVIDIA CUDA Toolkit for all platforms contains a vulnerability in nvJPEG where a local authenticated user may cause a divide by zero error by submitting a specially crafted JPEG file. A successful ...2.5
  11. CVE-2025-23272NVIDIA nvJPEG library contains a vulnerability where an attacker can cause an out-of-bounds read by means of a specially crafted JPEG file. A successful exploit of this vulnerability might lead to ...5.7
  12. CVE-2025-23271NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the nvdisasm binary where a user may cause an out-of-bounds read by passing a malformed ELF file to nvdisasm. A successful exploit ...3.3
  13. CVE-2025-23255NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the cuobjdump binary where a user may cause an out-of-bounds read by passing a malformed ELF file to cuobjdump. A successful exploi...3.3
  14. CVE-2025-23248NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the nvdisasm binary where a user may cause an out-of-bounds read by passing a malformed ELF file to nvdisasm. A successful exploit ...3.3
  15. CVE-2025-23247NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the cuobjdump binary, where a failure to check the length of a buffer could allow a user to cause the tool to crash or execute arbi...4.4

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store