NVIDIA Product Security Update Advisory

NVIDIA Product Security Update Advisory

Overview

 

We have released a security update to fix vulnerabilities in NVIDIA products. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-23333, CVE-2025-23334

 

Triton Inference Server Versions: 25.07 and earlier

 

CVE-2025-23335

 

Triton Inference Server Version: less than 25.05

 

 

Resolved Vulnerabilities

 

Information Disclosure Vulnerability Due to an Out-of-Bounds Read in NVIDIA Triton Inference Server (CVE-2025-23333)
Information leakage vulnerability due to out-of-bounds reads in NVIDIA Triton Inference Server (CVE-2025-23334)
Denial of Service Vulnerability in NVIDIA Triton Inference Server due to certain model configurations and underflow of input values (CVE-2025-23335)

 

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2025-23333, CVE-2025-23334

 

Triton Inference Server version: 25.07

 

CVE-2025-23335

 

Triton Inference Server Version: 25.05

 

 

References

 

[1] Security Bulletin: NVIDIA Triton Inference Server – August 2025
https://nvidia.custhelp.com/app/answers/detail/a_id/5687