9.8

CVE-2026-24254

NVIDIA Dynamo for Linux contains a vulnerability in the multimodal serving topology, where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, and information disclosure.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
NvidiaDynamo Version <= 1.1.0
   LinuxLinux Kernel Version-
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.54% 0.426
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Nvidia 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-288 Authentication Bypass Using an Alternate Path or Channel

The product requires authentication, but the product has an alternate path or channel that does not require authentication.

https://github.com/NVIDIA/product-security/tree/main/2026/5842
Product
https://nvd.nist.gov/vuln/detail/CVE-2026-24254
Third Party Advisory
US Government Resource
https://www.cve.org/CVERecord?id=CVE-2026-24254
Third Party Advisory