NVIDIAScape
A critical NVIDIA Container Toolkit flaw lets a malicious container image gain root on the host via an LD_PRELOAD in the createContainer hook.
ldcache Symlink
A symlink-following flaw in the Container Toolkit's update-ldcache hook lets a crafted image tamper with host files and disrupt other tenants.
The Incomplete Patch
How the fix for CVE-2024-0132 was bypassed five months later, reopening the NVIDIA Container Toolkit container escape.
Scheduler Bypass
Three Container Toolkit and GPU Operator vulnerabilities enabling container escape and isolation bypass.
Feb 2025 Container Toolkit
The February 2025 bulletin: full technical disclosure of CVE-2024-0132 and the CVE-2025-23359 bypass.
Triton Model Chain
A chain of Triton Inference Server Python-backend vulnerabilities leading to remote code execution.
Triton HTTP Overflows
Critical stack and heap buffer overflows in Triton Inference Server's HTTP handling.
Triton Command Injection
September 2025 Triton Inference Server vulnerabilities including OS command injection in the Python backend.
Apr 2025 Display Driver
NVIDIA's April 2025 driver bulletin: a Linux kernel-mode privilege escalation and two vGPU Manager flaws.
Oct 2025 Display Driver
October 2025 GPU display driver vulnerabilities disclosed by multiple research teams.
CUDA Toolkit Tools
Unit 42's month-long fuzzing campaign uncovered parsing vulnerabilities in the CUDA Toolkit's cuobjdump and nvdisasm tools.
Sep 2025 CUDA Toolkit
September 2025 CUDA Toolkit vulnerabilities including a heap-based buffer overflow in nvdisasm.
Megatron-LM
Code injection vulnerabilities across multiple Megatron-LM Python scripts allowing RCE on training infrastructure.
Resiliency Extension
Predictable log-file naming and related flaws in NVIDIA's Resiliency Extension log aggregation.
2024 Triton Bulletins
The 2024 Triton Inference Server bulletins, including the critical CVE-2024-0087.
Original Container Escape
The original NVIDIA Container Toolkit container escape that started the series of disclosures.
Jan 2025 Display Driver
January 2025 GPU display driver vulnerabilities, including CVE-2024-0146 memory corruption in the vGPU Manager.
Windows Driver Flaws
User-mode and kernel-mode flaws in the NVIDIA Windows GPU display driver enabling local exploitation.
Mid-2024 Display Driver
The mid-2024 NVIDIA GPU display driver bulletins covering CVE-2024-0089 through CVE-2024-0093.
NVFLARE Pickle
A critical insecure-deserialization flaw in NVFLARE enabling remote code execution across all platforms.
DGX A100 SBIOS
An SMI callout vulnerability in the DGX A100 SBIOS allowing privileged code execution.
Linux Driver UAF
A use-after-free in the NVIDIA Linux display driver patched in the R595 branch.
2026 Display Driver
Early-2026 kernel-mode driver vulnerabilities: improper GPU resource access, TOCTOU, and a driver-lock leak.
NVFLARE 2026
2026 NVIDIA FLARE SDK vulnerabilities including insecure deserialization RCE in the FOBS component.
AMD Instinct Heap Overflow
A heap overflow affecting AMD Instinct MI-series and consumer/professional GPUs, patched in ROCm 6.4.
Whispering Pixels
Uninitialized register access on AMD GPU hardware leading to cross-context information disclosure.
AMD Instinct Bulletins
A roundup of AMD Instinct security bulletins across 2025-2026, including MI300X SMC / Redfish API flaws.