CVE-2026-24215
Analyzed Analyzed - Analysis Complete

Uncontrolled Resource Consumption in NVIDIA Triton Inference Server

Vulnerability report for CVE-2026-24215, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-05-20

Last updated on: 2026-05-20

Assigner: NVIDIA Corporation

Description

NVIDIA Triton Inference Server contains a vulnerability in the DALI backend, where an attacker could cause uncontrolled resource consumption. A successful exploit of this vulnerability might lead to denial of service.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-05-20
Last Modified
2026-05-20
Generated
2026-06-29
AI Q&A
2026-05-20
EPSS Evaluated
2026-06-28
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
nvidia triton_inference_server to 26.03 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-400 The product does not properly control the allocation and maintenance of a limited resource.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Impact Analysis

If exploited, this vulnerability can cause uncontrolled resource consumption on the affected system.

This may result in a denial of service, making the NVIDIA Triton Inference Server unavailable or unable to process requests.

Compliance Impact

The provided information does not specify any direct impact of this vulnerability on compliance with common standards and regulations such as GDPR or HIPAA.

Executive Summary

The vulnerability exists in the DALI backend of the NVIDIA Triton Inference Server. It allows an attacker to cause uncontrolled resource consumption.

A successful exploit of this vulnerability might lead to a denial of service condition, meaning the server could become unavailable or unresponsive.

Mitigation Strategies

The vulnerability in NVIDIA Triton Inference Server's DALI backend can lead to uncontrolled resource consumption and denial of service.

To mitigate this vulnerability, immediate steps should focus on limiting exposure to untrusted networks and users, as the attack vector is network-based with no privileges required.

Since no specific mitigation commands or patches are provided in the available resources, it is recommended to monitor for updates from NVIDIA and apply any security patches as soon as they become available.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-24215. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart