Tuesday, August 11, 2026
LIVEThe Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///The Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///
Subscribe
Cyber Security
Independent · Digital
Thehackingpost
CybersecurityAI-assisted

NVIDIA Patches Vulnerabilities Causing DoS, EoP, and Data Exposure

NVIDIA has released critical security updates for several of its products, including BlueField, ConnectX, DOCA, Mellanox DPDK, Cumulus Linux, and NVOS. These updates address vulnerabilities that could potentially lead to denial of service (DoS),…

NVIDIA has released critical security updates for several of its products, including BlueField, ConnectX, DOCA, Mellanox DPDK, Cumulus Linux, and NVOS. These updates address vulnerabilities that could potentially lead to denial of service (DoS), escalation of privileges (EoP), and information disclosure.

Users are advised to download and install the updates immediately to ensure system protection. Updates can be accessed through the NVIDIA Product Security portal . Evaluation version users should contact their account manager for NVOnline access.

CVE ID CVSS v3.1 Score Severity Impacts

CVE-2025-23256 8.7 High EoP, DoS, disclosure, data tampering

CVE-2025-23257 7.3 High EoP

NVIDIA has released critical security updates for several of its products, including BlueField, ConnectX, DOCA, Mellanox DPDK, Cumulus Linux, and NVOS.
Danielle Frost · Thehackingpost

CVE-2025-23258 7.3 High EoP

CVE-2025-23259 6.5 Medium Disclosure, DoS

CVE-2025-23262 6.3 Medium EoP, DoS, disclosure, data tampering

CVE-2025-23261 5.5 Medium Information disclosure

Advertisement

BlueField: All versions prior to 45.1020 (GA) and corresponding LTS releases. Updated to 45.1020 (GA), 35.4554, 39.5050, or 43.3608 depending on branch. DOCA: Debian-based collectx-clxapidev and collectx-dpeserver packages updated to 2.9.3, 2.5.4, and 3.0.0. Mellanox DPDK: Versions prior to 22.11_2504.1.0, 22.11_2410.4.0 LTS, 22.11_2310.6.0 LTS, and various upstream releases. Updated to 25.07 and corresponding LTS builds. ConnectX: GA and LTS versions updated to 45.1020, 35.4554, 39.5050, 43.3608; ConnectX-4 updates planned by end of September. Cumulus Linux & NVOS: NVOS branches 25.02.xx updated to 25.02.42xx; Cumulus Linux updated to 5.13, 5.11.1.1009, 5.9.2.0020, and related builds.

Update Immediately: Install the latest firmware and software versions listed above. Review Logs: For CVE-2025-23261, sanitize and remove any exposed passwords from existing logs. Access Control: Limit local access to management interfaces on BlueField and ConnectX devices. Contact Support: For early access or assistance, reach out to your NVIDIA account manager.

Applying these updates will help organizations protect crucial networking components from service disruptions, privilege breaches, and data leaks.

Based on reporting by GBHackers.

AI transparency. This article was produced with the assistance of artificial intelligence and published under human editorial oversight. AI systems can make mistakes. Read how we use AI (EU AI Act, Art. 50).
Related Stories