NVIDIA Triton Inference Server for Linux contains a vulnerability where a user can set the logging location to an arbitrary file. If this file exists, logs are appended to the file. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.
Subscriptions
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-15888 | NVIDIA Triton Inference Server for Linux contains a vulnerability where a user can set the logging location to an arbitrary file. If this file exists, logs are appended to the file. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://nvidia.custhelp.com/app/answers/detail/a_id/5535 |
|
History
Fri, 19 Sep 2025 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Linux
Linux linux Kernel |
|
| CPEs | cpe:2.3:a:nvidia:triton_inference_server:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Linux
Linux linux Kernel |
Status: PUBLISHED
Assigner: nvidia
Published:
Updated: 2024-08-01T17:41:15.967Z
Reserved: 2023-12-02T00:41:57.569Z
Link: CVE-2024-0087
Updated: 2024-08-01T17:41:15.967Z
Status : Analyzed
Published: 2024-05-14T14:39:28.290
Modified: 2025-09-19T13:17:26.427
Link: CVE-2024-0087
No data.
OpenCVE Enrichment
Updated: 2025-07-12T22:23:33Z
Weaknesses
EUVD