CVE-2025-33225

EUVD-2025-203813
NVIDIA Resiliency Extension for Linux contains a vulnerability in log aggregation, where an attacker could cause predictable log-file names. A successful exploit of this vulnerability may lead to escalation of privileges, code execution, denial of service, information disclosure, and data tampering.
Symlink
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.4 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvidiaCNA
8.4 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 15%
Affected Products (NVD)
VendorProductVersion
nvidianvidia_resiliency_extension
𝑥
< 0.5.0
nvidianvidia_resiliency_extension
0.5.0:rc1
nvidianvidia_resiliency_extension
0.5.0:rc2
nvidianvidia_resiliency_extension
0.5.0:rc3
nvidianvidia_resiliency_extension
0.5.0:rc4
nvidianvidia_resiliency_extension
0.5.0:rc5
nvidianvidia_resiliency_extension
0.5.0:rc6
nvidianvidia_resiliency_extension
0.5.0:rc7
nvidianvidia_resiliency_extension
0.5.0:rc8
𝑥
= Vulnerable software versions