{"id":"CVE-2025-23257","title":"NVIDIA DOCA contains a vulnerability in the collectx-clxapidev Debian package that could allow an actor with low privileges to escalate privileges","summary":"NVIDIA DOCA contains a vulnerability in the collectx-clxapidev Debian package that could allow an actor with low privileges to escalate privileges. A successful exploit of this vulnerability might lead to escalation of privileges.","severity":"high","cvss":7.3,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","cwe":["CWE-732"],"published":"2025-09-04","updated":"2026-09-30","sourceUpdated":"2026-09-30T23:10:00.237","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-23257","references":[{"url":"https://nvd.nist.gov/vuln/detail/CVE-2025-23257","label":"psirt@nvidia.com"},{"url":"https://nvidia.custhelp.com/app/answers/detail/a_id/5655","label":"psirt@nvidia.com"},{"url":"https://www.cve.org/CVERecord?id=CVE-2025-23257","label":"psirt@nvidia.com"}],"tags":["nvd"],"epss":0.00155,"epssPercentile":0.04005,"ingestedAt":"2026-09-30T23:29:32.359Z","slug":"CVE-2025-23257","body":"## Overview\n\nNVIDIA DOCA contains a vulnerability in the collectx-clxapidev Debian package that could allow an actor with low privileges to escalate privileges. A successful exploit of this vulnerability might lead to escalation of privileges.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":40,"depthScoreParts":{"impact":40.2,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}