Unrated severityNVD Advisory· Published Sep 24, 2025· Updated Sep 24, 2025
CVE-2025-23348
CVE-2025-23348
Description
NVIDIA Megatron-LM for all platforms contains a vulnerability in the pretrain_gpt script, where malicious data created by an attacker may cause a code injection issue. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
Affected products
2- NVIDIA/Megatron-LMv5Range: All versions prior to 0.13.1 and 0.12.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.