Ce mail provient de l'extérieur, restons vigilants

=====================================================================

                            CERT-Renater

                Note d'Information No. 2025/VULN880
_____________________________________________________________________

DATE                : 18/12/2025

HARDWARE PLATFORM(S): NVIDIA.

OPERATING SYSTEM(S): Systems running NVIDIA Isaac Lab versions prior
                                    to v2.3.0.

=====================================================================
https://nvidia.custhelp.com/app/answers/detail/a_id/5733
_____________________________________________________________________

Security Bulletin: NVIDIA Isaac Lab - December 2025
Updated 12/12/2025 02:19 PM

NVIDIA has released an update for the NVIDIA Isaac™ Lab component of
NVIDIA Isaac Sim™ framework to address a security issue that might
lead to the impacts described in this bulletin. 

To protect your system, download and install the latest version of
Isaac Lab.

Go to NVIDIA Product Security.


Details

This section provides a summary of potential vulnerabilities that this
security update addresses and their impact. Descriptions use CWE™, and
base scores and vectors use CVSS v3.1 standards. 

CVE ID	Description    Vector   Base Score    Severity   CWE   Impacts

CVE-2025-32210	NVIDIA Isaac Lab contains a deserialization
vulnerability.  A successful exploit of this vulnerability might
lead to code execution.	AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H	9.0
Critical      CWE‑502	Code execution


Security Updates

The following table lists the NVIDIA products affected, versions affected,
and the updated version that includes this security update.

CVE IDs Addressed   Affected Products   Platform or OS   Affected Versions
Updated Version

CVE-2025-32210  Isaac Lab   All  All versions prior to v2.3.0
Isaac Sim v2.3.0


Acknowledgements

NVIDIA thanks Daniel Teixeira (NVIDIA AI Red Team) for reporting issue
CVE-2025-32210.

Get the Most Up-to-Date Product Security Information

Visit the NVIDIA Product Security page to

    Subscribe to security bulletin notifications
    See the current list of NVIDIA security bulletins
    Report a potential security issue in any NVIDIA supported product
    Learn more about the vulnerability management process followed by
the NVIDIA Product Security Incident Response Team (PSIRT)


Revision History

Revision	Date	Description
1.0	2 December 2025	Initial release


Support

If you have any questions about this security bulletin, contact
NVIDIA Support.


Disclaimer

ALL NVIDIA INFORMATION, DESIGN SPECIFICATIONS, REFERENCE BOARDS,
FILES, DRAWINGS, DIAGNOSTICS, LISTS, AND OTHER DOCUMENTS (TOGETHER
AND SEPARATELY, “MATERIALS”) ARE BEING PROVIDED “AS IS.” NVIDIA
MAKES NO WARRANTIES, EXPRESS, IMPLIED, STATUTORY, OR OTHERWISE
WITH RESPECT TO THE MATERIALS, AND ALL EXPRESS OR IMPLIED
CONDITIONS, REPRESENTATIONS AND WARRANTIES, INCLUDING ANY IMPLIED
WARRANTY OR CONDITION OF TITLE, MERCHANTABILITY, SATISFACTORY
QUALITY, FITNESS FOR A PARTICULAR PURPOSE AND NON-INFRINGEMENT,
ARE HEREBY EXCLUDED TO THE MAXIMUM EXTENT PERMITTED BY LAW.

Information is believed to be accurate and reliable at the time
it is furnished. However, NVIDIA Corporation assumes no
responsibility for the consequences of use of such information
or for any infringement of patents or other rights of third
parties that may result from its use. No license is granted by
implication or otherwise under any patent or patent rights of
NVIDIA Corporation. Specifications mentioned in this
publication are subject to change without notice. This
publication supersedes and replaces all information
previously supplied. NVIDIA Corporation products are not
authorized for use as critical components in life support
devices or systems without express written approval of
NVIDIA Corporation.

=========================================================
+ CERT-RENATER        |    tel : 01-53-94-20-44         +
+ 23/25 Rue Daviel    |    fax : 01-53-94-20-41         +
+ 75013 Paris         |   email:cert@support.renater.fr +
=========================================================




