CVE-2026-61777: High severity Nvidia Megatron Bridge vulnerability
NVIDIA Megatron Bridge contains a vulnerability where an attacker could cause a deserialization of untrusted data. A successful exploit of this vulnerability might lead to code execution, data tampering, and information disclosure.
Affected Software
Event History
Frequently Asked Questions
Who is realistically exposed to this issue?
Systems running NVIDIA Megatron Bridge are affected in the scope described. The local attack vector and low-privileges requirement indicate the attacker needs local access and an existing low-privileged account or execution context.
What does an attacker need to exploit it?
The attacker must be able to cause NVIDIA Megatron Bridge to deserialize untrusted data. No user interaction is required, and the supplied vector indicates exploitation is local rather than network-based.
What is the potential impact if exploitation succeeds?
Successful exploitation may allow code execution, data tampering, and information disclosure. The CVSS vector rates confidentiality, integrity, and availability impacts as high.