Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hw7x-6hm6-933c

Опубликовано: 26 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

NVIDIA Megatron-LM for all platforms contains a vulnerability in a python component where an attacker may cause a code injection issue by providing a malicious file. A successful exploit of this vulnerability may lead to Code Execution, Escalation of Privileges, Information Disclosure and Data Tampering.

NVIDIA Megatron-LM for all platforms contains a vulnerability in a python component where an attacker may cause a code injection issue by providing a malicious file. A successful exploit of this vulnerability may lead to Code Execution, Escalation of Privileges, Information Disclosure and Data Tampering.

EPSS

Процентиль: 19%
0.00274
Низкий

7.8 High

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 7.8
nvd
около 1 года назад

NVIDIA Megatron-LM for all platforms contains a vulnerability in a python component where an attacker may cause a code injection issue by providing a malicious file. A successful exploit of this vulnerability may lead to Code Execution, Escalation of Privileges, Information Disclosure and Data Tampering.

CVSS3: 7.8
fstec
около 1 года назад

Уязвимость компонента Python библиотеки для обучения больших языковых моделей NVIDIA Megatron-LM, связанная с неверным управлением генерацией кода, позволяющая нарушителю выполнить произвольный код и повысить свои привилегии

EPSS

Процентиль: 19%
0.00274
Низкий

7.8 High

CVSS3

Дефекты

CWE-94