Researchers Release PoC Exploit for High-Severity NVIDIA AI Toolkit Bug

Researchers Release PoC Exploit for High-Severity NVIDIA AI Toolkit Bug Wiz Research has disclosed a severe vulnerability in the NVIDIA Container Toolkit (NCT), dubbed #NVIDIAScape and tracked as CVE-2025-23266 with a CVSS score of 9.0, enabling malicious containers to escape isolation and gain root access on host systems. This flaw, stemming from a misconfiguration in OCI hook handling, affects NCT versions up to 1.17.7 (in CDI mode for pre-1.17.5 releases) and NVIDIA GPU Operator up to 25.3.1....

Save to Folder

Choose a folder to save this article: