CVE-2025-23267
8.5NVIDIA · Container Toolkit
A link following vulnerability in the NVIDIA Container Toolkit update-ldcache hook allows an attacker to cause data tampering or denial of service via a crafted container image.
Executive summary
The NVIDIA Container Toolkit is vulnerable to a link following flaw that could allow an attacker to trigger data tampering or a denial of service condition.
Vulnerability
This vulnerability involves improper link resolution before file access, specifically within the update-ldcache hook. An authenticated attacker with low privileges can exploit this by utilizing a specially crafted container image to perform unauthorized actions.
Business impact
The potential for data tampering and denial of service poses a significant risk to the integrity and availability of containerized environments. With a CVSS score of 8.5, this high-severity flaw necessitates prompt attention to prevent operational disruption and unauthorized modification of critical system files within the container host.
Remediation
Immediate Action: Upgrade to the latest version of the NVIDIA Container Toolkit and GPU Operator as specified in the official NVIDIA security advisory.
Proactive Monitoring: Monitor container orchestration logs for unusual file access patterns or unexpected errors related to ldcache processes.
Compensating Controls: Implement strict container image security policies and scanning to ensure that only verified and trusted images are deployed within the environment.
Exploitation status
Public Exploit Available: No
Analyst recommendation
Given the high CVSS score and the potential for service disruption, administrators should prioritize patching the NVIDIA Container Toolkit and associated GPU Operator components. Ensuring that container environments are updated to the latest secure releases will effectively remediate the risk of link following attacks.