Description
NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to denial of service and data tampering.
Published: 2026-08-04
Score: 8.2 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

NVIDIA Dynamo for Linux has a memory corruption flaw that allows an attacker to write beyond the bounds of a buffer. This out-of-bounds write can overwrite adjacent memory, potentially corrupting data structures and causing the application to crash or behave unpredictably. While a successful exploit may not grant direct remote code execution, it can be used to tamper with sensitive data and interrupt service availability.

Affected Systems

The vulnerability affects NVIDIA Dynamo for Linux. No supported version information is available in the current report.

Risk and Exploitability

The CVSS score of 8.2 indicates high severity. The EPSS score is not available, so current exploitation probability cannot be quantified. The vulnerability is not listed in CISA’s KEV catalog. Based on the description, the likely attack vector is remote exploitation of input handling in Dynamo, though it is inferred from the general nature of out-of-bounds writes and not explicitly stated.

Generated by OpenCVE AI on August 4, 2026 at 19:50 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Check NVIDIA’s product security page for an update that addresses the out‑of‑bounds write in Dynamo and install it as soon as it becomes available
  • After installing the patch, limit network exposure to Dynamo by applying firewall rules to restrict inbound traffic to trusted hosts
  • Continuously monitor system logs and crash reports for signs of memory corruption or unexpected crashes, and configure alerts to detect potential exploitation attempts

Generated by OpenCVE AI on August 4, 2026 at 19:50 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 05 Aug 2026 10:45:00 +0000

Type Values Removed Values Added
First Time appeared Nvidia
Nvidia dynamo
Vendors & Products Nvidia
Nvidia dynamo

Tue, 04 Aug 2026 20:15:00 +0000

Type Values Removed Values Added
Title Out-of-Bounds Write in NVIDIA Dynamo for Linux Enables Denial of Service and Data Tampering

Tue, 04 Aug 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 04 Aug 2026 17:45:00 +0000

Type Values Removed Values Added
Description NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause an out-of-bounds write. A successful exploit of this vulnerability might lead to denial of service and data tampering.
Weaknesses CWE-787
References
Metrics cvssV3_1

{'score': 8.2, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: nvidia

Published:

Updated: 2026-08-04T18:22:24.659Z

Reserved: 2026-01-21T19:09:48.283Z

Link: CVE-2026-24253

cve-icon Vulnrichment

Updated: 2026-08-04T18:22:21.212Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-04T18:16:49.767

Modified: 2026-08-07T19:35:11.840

Link: CVE-2026-24253

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-05T10:19:39Z

Weaknesses