Critical Vulnerability in NVIDIA BlueField DPUs Allows Remote Code Execution

NVIDIA has recently disclosed a significant security vulnerability affecting its BlueField Data Processing Units (DPUs) and ConnectX networking platforms. This flaw, identified as CVE-2026-65094, resides in the VIRTIO-Net component and carries a CVSS v3.1 score of 9.0, indicating a critical risk level for enterprise and cloud environments.

The vulnerability stems from a write-what-where condition within the BlueField-3 Virtio-Net implementation. This flaw enables attackers to manipulate memory by writing arbitrary data to unintended locations, potentially leading to the execution of malicious code. Such exploitation could compromise the integrity and confidentiality of affected systems.

Potential Exploitation Scenarios

In practical terms, an attacker with low-level privileges within a virtual machine (VM) could craft a malicious message to exploit this vulnerability. Given that the attack vector is adjacent and does not require user interaction, environments with shared or multi-tenant configurations—such as cloud infrastructures or virtualized data centers—are particularly susceptible. Moreover, the vulnerability’s scope extends beyond the initially compromised component, amplifying its potential impact in production settings.

BlueField DPUs are integral to modern data center architectures, offloading networking, storage, and security tasks from host CPUs. A successful attack at this level could allow adversaries to bypass traditional security measures, move laterally across workloads, or disrupt network traffic processing. This poses a heightened risk for organizations relying on NVIDIA’s networking solutions for high-performance computing and cloud-native operations.

Affected Versions and Mitigation

The vulnerability affects multiple versions of NVIDIA VIRTIO-Net, including both general availability and long-term support releases. Specifically, all versions prior to 25.10.6 for VIRTIO-Net GA, 25.10.2 for LTS25, 24.10.50 for LTS24, and 23.10.23 for LTS23 are impacted. NVIDIA has released patched versions to address this issue and strongly recommends that organizations update immediately to mitigate potential exploitation.

While NVIDIA’s risk assessment provides an average across various deployments, organizations should evaluate their specific infrastructures, especially when untrusted virtual machines or tenants have access to shared networking resources. The vulnerability was discovered internally by NVIDIA, and as of the disclosure date, no active exploitation has been reported. However, given the critical nature of write-what-where vulnerabilities and their history of real-world exploitation, security teams should prioritize addressing this issue.

Users can obtain the latest updates through NVIDIA’s official product security portal and DOCA VIRTIO-Net distribution channels. To reduce the risk of compromise, it is recommended to apply patches promptly, restrict access to untrusted VMs, and monitor for unusual network behavior as part of a comprehensive defense strategy.

This disclosure underscores the importance of proactive vulnerability management in complex, multi-tenant environments. Organizations must remain vigilant, ensuring that critical infrastructure components like DPUs are regularly updated and monitored to prevent potential breaches that could have far-reaching consequences.