PT-2026-27505 · Nvidia · Nvidia Megatron-Lm

Published

2026-03-24

·

Updated

2026-03-25

·

CVE-2025-33247

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NVIDIA Megatron LM (affected versions not specified)
Description NVIDIA Megatron LM contains a flaw in how it loads quantization configurations, potentially allowing for remote code execution. Exploitation of this issue could result in code execution, privilege escalation, information disclosure, and data tampering.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

BDU:2026-07618
CVE-2025-33247

Affected Products

Nvidia Megatron-Lm