VYPR
Unrated severityNVD Advisory· Published Sep 24, 2025· Updated Sep 24, 2025

CVE-2025-23348

CVE-2025-23348

Description

NVIDIA Megatron-LM for all platforms contains a vulnerability in the pretrain_gpt script, where malicious data created by an attacker may cause a code injection issue. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Nvidia/Megatron Lmllm-fuzzy2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: All versions prior to 0.13.1 and 0.12.3

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.