NVIDIA NeMo AI Curator Vulnerability Allows Code Execution and Privilege Escalation

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

NVIDIA NeMo AI Curator Vulnerability Allows Code Execution and Privilege Escalation

Post by Shane1145 »

NVIDIA released a security bulletin for NVIDIA® NeMo Curator addressing a high-severity vulnerability (CVE-2025-23307) that affects all prior versions of the Curator software.

The flaw, rooted in improper handling of user-supplied files, allows a maliciously crafted file to be processed by NeMo Curator, leading to code injection and arbitrary code execution.

Successful exploitation can result in unauthorized privilege escalation, disclosure of sensitive information, and data tampering.

https://gbhackers.com/nvidia-nemo-ai-cu ... erability/
Post Reply