← Back to browse · API

CVE-2024-0087

Severity
CRITICAL
CVSS
9.0
EPSS
0.1992
Risk score
42.97
CISA KEV
No
PoC
No
Published
2024-05-09
Modified
2024-08-01
First seen
2026-08-08
Aliases
EUVD-2024-15888, GHSA-3PGG-FXM7-XV3P
Products
NVIDIA:NVIDIA Triton Inference Server 22.09 to 24.03
Sources
euvd EUVD-2024-15888

Description

NVIDIA Triton Inference Server for Linux contains a vulnerability where a user can set the logging location to an arbitrary file. If this file exists, logs are appended to the file. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.

References