PT-2026-42088 · Nvidia · Trt-Llm

Published

2026-05-20

·

Updated

2026-05-20

·

CVE-2026-24142

CVSS v3.1

6.3

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions NVIDIA TRT-LLM (affected versions not specified)
Description NVIDIA TRT-LLM contains a deserialization issue and an unsafe serialized handle. Deserialization is the process of converting a data stream back into an object. A successful exploit could result in arbitrary code execution, data tampering, and information disclosure.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2026-24142

Affected Products

Trt-Llm