CVE-2025-33179

NVIDIA Cumulus Linux and NVOS products contain a vulnerability in the NVUE interface, where a low-privileged user could run an unauthorized command. A successful exploit of this vulnerability might lead to escalation of privileges.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:nvidia:cumulus_linux:*:*:*:*:-:*:*:*
cpe:2.3:o:nvidia:cumulus_linux:*:*:*:*:lts:*:*:*
cpe:2.3:o:nvidia:cumulus_linux:*:*:*:*:lts:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:nvidia:nvos:*:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:dgx_gb200:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:nvidia:nvos:*:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:gb300_nvl72:1.0:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:nvidia:nvos:*:*:*:*:*:*:*:*
cpe:2.3:h:nvidia:quantum-x800:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-02-24 20:27

Updated : 2026-02-27 20:03


NVD link : CVE-2025-33179

Mitre link : CVE-2025-33179

CVE.ORG link : CVE-2025-33179


JSON object : View

Products Affected

nvidia

  • cumulus_linux
  • dgx_gb200
  • quantum-x800
  • gb300_nvl72
  • nvos
CWE
CWE-266

Incorrect Privilege Assignment

NVD-CWE-noinfo