Description

Welcome to the NVIDIA Public Bug Bounty Program Thank you for your interest in helping us protect our products and users. We deeply value the security research community and appreciate the time, effort, and creativity you bring to making technology safer for everyone. Your contributions play an essential role in strengthening the trust our users place in NVIDIA.

Bounties
Low
0.1 - 3.9
Medium
4.0 - 6.9
High
7.0 - 8.9
Critical
9.0 - 9.4
Exceptional
9.5 - 10.0
Tier 1
$
300
2,000
4,000
15,000
15,000
Tier 1
$300 - $15,000
Tier 2
$
250
1,500
3,000
10,000
10,000
Tier 2
$250 - $10,000
Tier 3
$
150
750
1,250
5,000
5,000
Tier 3
$150 - $5,000
Rules of engagement
Not applicable
Not applicable
Not applicable
Not applicable

By participating in this program, you agree to:

  • Respect the Community Code of Conduct
  • Respect the Intigriti Terms and Conditions
  • Respect the scope of the program
  • Not discuss or disclose vulnerability information without prior written consent (including PoC's on YouTube and Vimeo)
Assets
2
Container Toolkit

The NVIDIA Container Toolkit is a collection of libraries and utilities enabling users to build and run GPU-accelerated containers.
See documentation: https://docs.nvidia.com/datacenter/cloud-native/container-toolkit/latest/index.html

new CDI-based architecture
Other
Tier 1
All Other NVIDIA Container Toolkit Assets
Other
Tier 2
9
CUDA Toolkit

The NVIDIA® CUDA® Toolkit provides a development environment for creating high performance GPU-accelerated applications. With the CUDA Toolkit, you can develop, optimize, and deploy your applications on GPU-accelerated embedded systems, desktop workstations, enterprise data centers, cloud-based platforms and HPC supercomputers. The toolkit includes GPU-accelerated libraries, debugging and optimization tools, a C/C++ compiler, and a runtime library to deploy your application.

Using built-in capabilities for distributing computations across multi-GPU configurations, scientists and researchers can develop applications that scale from single GPU workstations to cloud installations with thousands of GPUs.

General CUDA Toolkit Documentation:
https://docs.nvidia.com/cuda/

libNVVM API
Other
Tier 1
Nsight Systems
Other
Tier 1
NVIDIA Nsight Developer Tools
Other
Tier 1
NVRTC library
Other
Tier 1
CUDA Libraries
Other
Tier 2
NVCC
Other
Tier 2
nvJitLink APIs
Other
Tier 2
CUDA Driver APIs
Other
Tier 3
In scope

Container Toolkit Scope

The implementation using the NVIDIA Container Runtime Hook, NVIDIA Container CLI, and NVIDIA Container Library is considered deprecated and is effectively in maintenance mode. With this in mind, although critical vulnerabilities in this stack will be addressed, focus on the new CDI-based architecture is appreciated.

CUDA Toolkit Scope

Focus areas and Special Interests

  • We are specifically looking for vulnerabilities which include local privilege escalation.
  • The CUDA Toolkit includes software that is run only by CUDA developers (such as the nvcc compiler) and software that runs as part of a CUDA program deployed to users (such as libraries linked into CUDA programs). Vulnerabilities that impact users of CUDA programs are more valuable than those which only impact developers. A bug that requires the presence of the nvcc compiler is less valuable than one that impacts any CUDA binary built with CUDA libraries.
  • We are looking for proof that you can use a bug to gain privilege. Making a program crash with a malformed input is not enough. We want to see that you can use the bug to execute code at a higher level of privilege than the user running the tool. For example, running code as a superuser or making the kernel driver take malicious action.
  • As of July 1, 2025 GMT: DLL Highjacking related vulnerabilities will be classified as Tier 3 submissions

Out of scope

CUDA Toolkit Out of Scope

Asset Specific

  • Null pointer issues
  • Compiler Object Tools are not included in the compiler threat model, as they are not directly involved in the CUDA compilation flow. These are standalone development and diagnostic tools. Achieving an ACE on these tools does not have any security impact on the CUDA Toolkit or the compilers.

General

  • In case that a reported vulnerability was already known to the company from their own tests, it will be flagged as a duplicate
  • Theoretical security issues with no realistic exploit scenario(s) or attack surfaces, or issues that would require complex end user interactions to be exploited
  • Spam, social engineering and physical intrusion
  • DoS/DDoS attacks or brute force attacks
  • Vulnerabilities that only work on software that no longer receive security updates
  • Attacks requiring physical access to a victim's computer/device, man in the middle or compromised user accounts
  • Recently discovered zero-day vulnerabilities found in in-scope assets within 14 days after the public release of a patch or mitigation may be reported, but are usually not eligible for a bounty
  • Reports that state that software is out of date/vulnerable without a proof-of-concept
Severity assessment

This program follows Intigriti's triage standards based on the proof of concept.

FAQ

Please select one of the sections below and remove the sections that aren't applicable for you

Where can we get credentials for Container Toolkit?

Where can we get credentials for CUDA Toolkit?

Which Attack Vector Should be used in the CVSS Calculation?

  • Always assume local access is required when evaluating vulnerabilities (Please set the CVSS attack vector to Local).
  • Due to the nature of the CVSS calculator, vulnerabilities in that case can only reach a max severity of 9.3.
  • As a result, exceptional and critical vulnerabilities within this program are eligible for the same bounty payout.
All aboard!
Please log in or sign up on the platform

For obvious reasons we can only allow submissions or applications for our program with a valid Intigriti account.

It will only take 2 minutes to create a new one or even less to log in with an existing account, so don't hesitate and let's get started. We would be thrilled to have you as part of our community.

Activity
6/11
logo
almirkrass
created a submission
6/11
logo
jedal15
created a submission
6/11
logo
so3litude_
created a submission
6/11
logo
elevante
created a submission
6/11
logo
bunny0417
created a submission
6/11
logo
wloqo
created a submission
6/11
Nvidia updated the confidentiality level to public
6/11
Nvidia updated the confidentiality level to registered
6/11
Nvidia updated the confidentiality level to application
6/11
Nvidia
unsuspended the program