A critical security flaw in NVIDIA’s Riva framework exposes cloud environments to unauthorized access due to misconfigured deployments. Vulnerabilities CVE-2025-23242 and CVE-2025-23243 allow attackers to bypass authentication, abuse GPU resources, and steal proprietary models. Affected versions (up to 2.18.0) lack proper SSL/TLS configurations. Upgrading to Riva 2.19.0 is crucial for mitigation.

Prank trojan in Russia, European Commission data leak, and other cybersecurity news – ForkLog
Prank trojan in Russia, European Commission data leak, and other cybersecurity news ForkLog

.webp?w=0&resize=0,0&ssl=1)
