CVE-2024-0087: NVIDIA Triton Inference Server
High severity, CVSS 8.8. EPSS: 19.9% chance of exploitation in the next 30 days.
NVIDIA Triton Inference Server for Linux contains a vulnerability where a user can set the logging location to an arbitrary file. If this file exists, logs are appended to the file. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Affected products
- NVIDIA Triton Inference Server: from 20.10, before 24.04 (fixed in 24.04)
Published 2024-05-14. Last modified 2026-06-17.