CVE-2026-24214
HIGH 8NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker could cause an integer overflow. A successful exploit of this vulnerability might lead to code execution, data tampering, or denial of service.
ELEVATED IMPACT
Severe if exploited (CVSS 8), but no known exploitation and low modeled probability. Patch on a normal cadence.
Exploitation likelihood
0.7%chance of exploitation in 30 days · 49th percentile
○ In CISA KEV
○ Public exploit / PoC
Impact if exploited
8CVSS 3.1 · HIGH
- ConfidentialityHigh
- IntegrityHigh
- AvailabilityHigh
What an attacker needs
- ✓Access: Reachable over the network — no local access needed
- ⚠Privileges: Requires a low-privilege account
- ⚠User interaction: A user must take an action (click / open a file)
- ✓Complexity: No special conditions — reliably repeatable
✓ lowers the bar for an attacker · ⚠ raises it
Weakness (CWE)
- CWE-190: Integer overflow
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H