Cyber Security News is a Dedicated News Platform For Cyber News, Cyber Attack News, Hacking News & Vulnerability Analysis. Researchers from Wiz Research noted that CVE-2025-23359 bypasses an earlier vulnerability, CVE-2024-0132, which was patched in September 2024 , however, some security gaps remained. NVIDIA credits researchers from Wiz Research Andres Riancho, Ronen Shustin, and Shir Tamari and Lei Wang for identifying this vulnerability. This vulnerability tracked as CVE-2025-23359, is categorized as a Time-of-Check Time-of-Use (TOCTOU) flaw with a CVSS v3.1 base score of 8.3 (High). Users are advised to update affected software immediately, validate container images using checksum verification, and avoid enabling deprecated features unless absolutely necessary. Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. It allows a maliciously crafted container image to exploit a race condition, gaining unauthorized access to the host file system. Alternatively, applications requiring CUDA Forward Compatibility can set the LD_LIBRARY_PATH environment variable to include /usr/local/cuda/compat, though this may lead to portability issues across driver versions. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.
This Cyber News was published on cybersecuritynews.com. Publication date: Fri, 14 Feb 2025 13:35:14 +0000