Triton Inference Server: RCE via path traversal on the model-load API
CVSS 9.0CVE-2024-0087NVIDIA / GPU stackcurated
Impact
RCE via path traversal on the model-load API
Who can reach it
Unauthenticated/low-priv client of the inference endpoint
What to do
Upgrade Triton (24.09+); rebuild and redeploy all serving images; restrict model-control API
References
Related entries
- Triton Inference Server: Improper logging of security events (audit gap)CVE-2024-0095 · Triton Inference ServerCritical
- Triton Inference Server: RCE / privesc via input-validation failureCVE-2025-23268 · Triton Inference ServerHigh
- Triton Inference Server: Info disclosure / RCE (OOB read in tensor processing)CVE-2026-24213 · Triton Inference ServerHigh
- Triton Inference Server: RCE (integer overflow in model config parsing)CVE-2026-24214 · Triton Inference ServerHigh
- Triton Inference Server: RCE / privesc / data tampering via model-load path traversal (`--model-control explicit`)CVE-2023-31036 · Triton Inference ServerHigh
- Triton Inference Server: concurrent requests trigger a race condition that crashes the server (remote DoS)CVE-2025-33238 · Triton Inference ServerHigh
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.