CVE-2025-23351
NVIDIA BlueField GA, BlueField LTS22, BlueField LTS23
NVIDIA ConnectX and BlueField contain a vulnerability in the command interface where a local user with virtual function (VF) access may cause a write out of bounds by crafted input. A successful exploit of this vulnerability may lead to arbitrary code execution on the device.
- CVSS
- 9
- EPSS
- 0.27% 18.8% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.02