CVE-2025-23322

NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where multiple requests could cause a double free when a stream is cancelled before it is processed. A successful exploit of this vulnerability might lead to denial of service.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:nvidia:triton_inference_server:*:*:*:*:*:*:*:*
OR cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

12 Aug 2025, 16:35

Type Values Removed Values Added
CPE cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:nvidia:triton_inference_server:*:*:*:*:*:*:*:*
Summary
  • (es) NVIDIA Triton Inference Server para Windows y Linux contiene una vulnerabilidad que permite que varias solicitudes provoquen una doble liberación si una transmisión se cancela antes de ser procesada. Una explotación exitosa de esta vulnerabilidad podría provocar una denegación de servicio.
First Time Microsoft windows
Linux linux Kernel
Nvidia
Nvidia triton Inference Server
Microsoft
Linux
References () https://nvd.nist.gov/vuln/detail/CVE-2025-23322 - () https://nvd.nist.gov/vuln/detail/CVE-2025-23322 - US Government Resource
References () https://nvidia.custhelp.com/app/answers/detail/a_id/5687 - () https://nvidia.custhelp.com/app/answers/detail/a_id/5687 - Vendor Advisory
References () https://www.cve.org/CVERecord?id=CVE-2025-23322 - () https://www.cve.org/CVERecord?id=CVE-2025-23322 - Third Party Advisory

06 Aug 2025, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-06 13:15

Updated : 2025-08-12 16:35


NVD link : CVE-2025-23322

Mitre link : CVE-2025-23322

CVE.ORG link : CVE-2025-23322


JSON object : View

Products Affected

linux

  • linux_kernel

nvidia

  • triton_inference_server

microsoft

  • windows
CWE
CWE-415

Double Free