Triton Inference Server: RCE via path traversal on the model-load API
CVE-2024-0087NVIDIA / GPU stackcurated
Impact
RCE via path traversal on the model-load API
Who can reach it
Unauthenticated/low-priv client of the inference endpoint
What to do
Upgrade Triton (24.09+); rebuild and redeploy all serving images; restrict model-control API
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.