Out-of-Bounds Write Vulnerability in NVIDIA Dynamo for Linux
CVE-2026-24254

9.8CRITICAL

Key Information:

Vendor

Nvidia

Status
Vendor
CVE Published:
4 August 2026

What is CVE-2026-24254?

NVIDIA Dynamo for Linux contains a vulnerability in its multimodal serving topology, allowing an attacker to perform an out-of-bounds write. If successfully exploited, this flaw can lead to severe consequences, including unauthorized code execution, privilege escalation, tampering with data, denial of service, and potential exposure of sensitive information. Organizations using the affected versions should prioritize implementing the necessary security updates to mitigate these risks.

Affected Version(s)

Dynamo Linux 0 to v1.1.0

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.