Skip to main content
Mallory
Back to intelligence
ai-platform-securitywidely-deployed-product-advisoryopen-source-dependency-vulnerabilityinternet-facing-service-vulnerability

NVIDIA Patches Critical RCE Flaws Across AI and Enterprise Software

Updated 6d agoFirst seen Mar 27, 20263 sources

NVIDIA issued security updates for multiple products across its AI and enterprise software stack, fixing vulnerabilities that could allow remote code execution, denial of service, privilege escalation, data tampering, and information disclosure. The most severe issue disclosed in its broader March advisories was CVE-2025-33244 in NVIDIA Apex, a widely used PyTorch extension for mixed-precision and distributed training. High-severity flaws were also addressed in Triton Inference Server, Megatron LM, NeMo Framework, and Model Optimizer, with NVIDIA warning that exploitation could disrupt AI workloads, expose sensitive training data, or enable unauthorized access. Medium-severity issues were additionally listed in VIRTIO-Net, SNAP4, and B300 MCU.

NVIDIA later released urgent fixes for TensorRT-LLM and Isaac Launchable, including TensorRT-LLM deserialization flaws in MPI server and RPC testing components that could lead to RCE, data manipulation, information disclosure, or service outages. It also patched a Linux issue in Isaac Launchable involving sensitive information sent in clear text, creating risks of privilege escalation and system disruption. NVIDIA advised customers to upgrade TensorRT-LLM to 1.2.1 or later, and said organizations running multi-GPU deployments should use:

trtllm-llmapi-launch

to reduce network exposure. The company has also begun publishing PSIRT bulletins on GitHub in Markdown and CSAF formats to support automated vulnerability management and faster remediation.

Share:
NVIDIA Patches Critical RCE Flaws Across AI and Enterprise Software
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

3 events from the most recent confirmed update back to the earliest known activity.

3 EVENTS
Jun 3, 20266d ago

NVIDIA issues security update for NVTabular deserialization flaws

NVIDIA issued a security update for NVTabular to address two high-severity insecure deserialization vulnerabilities, CVE-2026-24237 and CVE-2026-24221. The flaws affected versions from 0.0 up to commit 5dd11f4, and NVIDIA recommended updating to commit 08e0633.

NVIDIA NVTabular Vulnerability Patched
May 27, 202613d ago

NVIDIA releases patches for TensorRT-LLM and Isaac Launchable flaws

NVIDIA released software updates to fix several vulnerabilities affecting TensorRT-LLM and Isaac Launchable, including deserialization issues that could enable remote code execution, data tampering, information disclosure, or denial of service. The fixes included guidance to upgrade TensorRT-LLM to version 1.2.1 or later and to use trtllm-llmapi-launch in multi-GPU environments.

NVIDIA TensorRT-LLM Vulnerabilities Fixed in New Patch
Mar 24, 20263mo ago

NVIDIA publishes March 2026 security advisories for enterprise and AI software

On 2026-03-24, NVIDIA published security advisories covering multiple vulnerabilities across products including Apex, Triton Inference Server, Megatron LM, NeMo Framework, Model Optimizer, VIRTIO-Net, SNAP4, and B300 MCU. The flaws included risks such as remote code execution, denial of service, privilege escalation, and possible exposure of sensitive training data.

Critical NVIDIA Vulnerabilities Enables RCE and DoS Attacks
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.