Back to Database
Status published
High
CVE-2025-23263
NVIDIA DOCA-Host and Mellanox OFED contain a vulnerability in the...
Vulnerability Description
NVIDIA DOCA-Host and Mellanox OFED contain a vulnerability in the VGT+ feature, where an attacker on a VM might cause escalation of privileges and denial of service on the VLAN.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-23263
Credits & Attribution
No credits recorded in the NVD database.
More from NVIDIA
View All →CVE-2025-33255
NVIDIA TRT-LLM for any platform contains a vulnerability in MPI...
High
7.5
CVE-2025-33254
NVIDIA Triton Inference Server contains a vulnerability where an attacker...
High
7.5
CVE-2025-33253
NVIDIA NeMo Framework contains a vulnerability where an attacker could...
High
7.8
CVE-2025-33252
NVIDIA NeMo Framework contains a vulnerability where an attacker could...
High
7.8
CVE-2025-33251
NVIDIA NeMo Framework contains a vulnerability where an attacker could...
High
7.8
Affected Vendor
NVIDIA
View all reports →Affected Software
DOCA-Host and Mellanox OFED
Vulnerable Versions:
DOCA-Host All versions prior to 2.5.4-0.0.9, DOCA-Host All versions prior to 2.9.3-0.2.2, DOCA-Host All versions prior to 3.0.0-058001, Mellanox OFED All versions prior to 5.8-7.0.6.1, Mellanox OFED All versions prior to 23.10-5.1.4.0, Mellanox OFED All versions prior to 24.10-3.2.5.0
Timeline
Official Publish:
July 17th, 2025
Last Modified:
July 24th, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H
Weaknesses (CWE)
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.