CVE-2025-33221

Public on 2026-05-26
Modified on 2026-05-29
Description
NVIDIA Display Driver for Windows and Linux contains a vulnerability in the kernel driver, where a user could cause an incorrect permission assignment for a critical resource. A successful exploit of this vulnerability might lead to data tampering and denial of service.
Severity
Medium severity
Medium
See what this means
CVSS v3 Base Score
4.4
See breakdown

Affected Packages

Platform Package Release Date Advisory Status
Amazon Linux 2023 cuda-compat Pending Fix
Amazon Linux 2023 cuda-drivers Pending Fix
Amazon Linux 2023 kmod-nvidia-latest-dkms Pending Fix
Amazon Linux 2023 kmod-nvidia-open-dkms Pending Fix
Amazon Linux 2023 libnvidia-nscq Pending Fix
Amazon Linux 2023 libnvsdm Pending Fix
Amazon Linux 2023 nvidia-driver Pending Fix
Amazon Linux 2023 nvidia-fabricmanager Pending Fix
Amazon Linux 2023 nvidia-imex Pending Fix
Amazon Linux 2023 nvidia-kmod-common Pending Fix
Amazon Linux 2023 nvidia-modprobe Pending Fix
Amazon Linux 2023 nvidia-open Pending Fix
Amazon Linux 2023 nvidia-persistenced Pending Fix
Amazon Linux 2023 nvidia-settings Pending Fix
Amazon Linux 2023 nvidia-xconfig Pending Fix
Amazon Linux 2023 nvlink5 Pending Fix
Amazon Linux 2023 nvlink5-580 Pending Fix

CVSS Scores

Score Type Score Vector
Amazon Linux CVSSv3 4.4 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N