CVE-2026-24229: High severity Nvidia TensorRT-LLM vulnerability
NVIDIA TensorRT-LLM for Linux contains a vulnerability in the disaggregated orchestrator component, where an attacker could read, write, or delete internal cluster state by sending requests to the FastAPI server. A successful exploit of this vulnerability might lead to information disclosure, data tampering, and denial of service.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-24229?
The severity of CVE-2026-24229 is rated high with a score of 7.3.
What types of attacks are possible due to CVE-2026-24229?
CVE-2026-24229 allows an attacker to read, write, or delete internal cluster state.
How can I mitigate the risks associated with CVE-2026-24229?
To mitigate CVE-2026-24229, ensure that access controls and network security measures are properly enforced for the FastAPI server.
What software is affected by CVE-2026-24229?
Nvidia TensorRT-LLM for Linux is the software affected by CVE-2026-24229.
What could be the potential impact of exploiting CVE-2026-24229?
Exploitation of CVE-2026-24229 could lead to information disclosure and potential data loss.