Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-21818 | NVIDIA Container Toolkit for all platforms contains a vulnerability in the update-ldcache hook, where an attacker could cause a link following by using a specially crafted container image. A successful exploit of this vulnerability might lead to data tampering and denial of service. |
Github GHSA |
GHSA-67jc-hmvg-q4c7 | NVIDIA Container Toolkit for all platforms contains a vulnerability in the update-ldcache hook |
Tue, 04 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Sat, 19 Jul 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | nvidia-container-toolkit: NVIDIA Container Toolkit Link Following Vulnerability | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Thu, 17 Jul 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 17 Jul 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | NVIDIA Container Toolkit for all platforms contains a vulnerability in the update-ldcache hook, where an attacker could cause a link following by using a specially crafted container image. A successful exploit of this vulnerability might lead to data tampering and denial of service. | |
| Weaknesses | CWE-59 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: nvidia
Published:
Updated: 2025-11-04T21:09:39.708Z
Reserved: 2025-01-14T01:06:23.291Z
Link: CVE-2025-23267
Updated: 2025-11-04T21:09:39.708Z
Status : Deferred
Published: 2025-07-17T20:15:28.843
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-23267
OpenCVE Enrichment
Updated: 2025-07-21T15:17:16Z
EUVD
Github GHSA