High severity7.5NVD Advisory· Published Sep 20, 2023· Updated Jun 17, 2026
CVE-2023-25525
CVE-2023-25525
Description
NVIDIA Cumulus Linux contains a vulnerability in forwarding where a VxLAN-encapsulated IPv6 packet received on an SVI interface with DMAC/DIPv6 set to the link-local address of the SVI interface may be incorrectly forwarded. A successful exploit may lead to information disclosure.
Affected products
3cpe:2.3:o:nvidia:cumulus_linux:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:nvidia:cumulus_linux:*:*:*:*:*:*:*:*range: <5.6.0
- (no CPE)
- (no CPE)range: All versions prior to 5.6.0
Patches
Vulnerability mechanics
References
1- nvidia.custhelp.com/app/answers/detail/a_id/5480nvdVendor Advisory
News mentions
0No linked articles in our index yet.