ZDI-CAN-30321: ZDI-26-593: NVIDIA TensorRT ONNX File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of NVIDIA TensorRT. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-24268.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Because exploitation requires user interaction (target must visit a malicious page or open a malicious file), restrict/monitor user ability to access untrusted web content and prevent opening untrusted files (e.g., via email/web filtering and safe browsing controls) to reduce the likelihood of exploitation.
- Compensating control
For NVIDIA TensorRT systems, limit network exposure so remote attackers have fewer opportunities to reach affected installations (e.g., restrict access to TensorRT-related services/ports to trusted networks only using firewall/ACL rules).