← Back

CVE-2025-23250

nvd nist
Published: Apr 22, 2025Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

NVIDIA NeMo Framework contains a vulnerability where an attacker could cause an improper limitation of a pathname to a restricted directory by an arbitrary file write. A successful exploit of this vulnerability might lead to code execution and data tampering.

Affected (1)

Products: Nvidia: Nemo
1 product
Nemo
Configuration A
1 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
Before 25.02
Running on/withPlatform Versions
Apple
Macos
All versions
Linux
Linux Kernel
All versions
Microsoft
Windows
All versions

References (1)

Source: psirt@nvidia.com
Vendor Advisory

Timeline

No history available yet.