CVE-2026-47628
Analyzed Analyzed - Analysis Complete

Resource Exhaustion in NVIDIA Triton Inference Server

Vulnerability report for CVE-2026-47628, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-18

Last updated on: 2026-09-01

Assigner: NVIDIA Corporation

Description

NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause an allocation of resources without limits. A successful exploit might lead to denial of service.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-18
Last Modified
2026-09-01
Generated
2026-09-08
AI Q&A
2026-08-18
EPSS Evaluated
2026-09-06
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
nvidia triton_inference_server to 26.05 (inc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-770 The product allocates a reusable resource or group of resources on behalf of an actor without imposing any intended restrictions on the size or number of resources that can be allocated.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability in NVIDIA Triton Inference Server for Linux allows an attacker to cause an unlimited allocation of system resources. This can lead to a denial of service by exhausting available resources such as memory or CPU.

Detection Guidance

Detection involves monitoring resource usage and Triton Inference Server logs for abnormal allocation patterns. Check for excessive memory or CPU consumption by the Triton server process. Review logs for errors related to resource exhaustion or failed requests.

Impact Analysis

An attacker could exploit this to crash the Triton Inference Server or the entire system by consuming all available resources. This would disrupt services relying on the server, causing downtime and potential data processing failures.

Compliance Impact

The vulnerability could lead to denial of service due to unlimited resource allocation, which may disrupt services handling sensitive data. This could impact compliance with GDPR (data availability) and HIPAA (service reliability for protected health information) by causing service disruptions or data processing delays.

Mitigation Strategies

Update NVIDIA Triton Inference Server to the latest patched version to address the resource allocation vulnerability. Monitor system resources for unusual consumption patterns that may indicate exploitation attempts.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-47628. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart