Unrated severityNVD Advisory· Published Mar 24, 2026· Updated Mar 25, 2026
CVE-2025-33248
CVE-2025-33248
Description
NVIDIA Megatron-LM contains a vulnerability in the hybrid conversion script where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
Affected products
2- NVIDIA/Megatron LMv5Range: All versions prior to 0.15.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.