CVE-2023-25526

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Sep 20, 2023
Updated: Sep 22, 2023
CWE ID 248

Summary

CVE-2023-25526 is a newly identified vulnerability affecting NVIDIA Cumulus Linux. The issue lies in the neighmgrd and nlmanager components, which can be exploited by an attacker on an adjacent network. By injecting a maliciously crafted packet, the attacker can trigger an uncaught exception in these components, resulting in a denial of service. This vulnerability poses a significant threat to network security and requires immediate attention from NVIDIA and its users. It is crucial to apply relevant patches or updates to mitigate the risk of exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share