Vulnerability Details CVE-2026-24152
NVIDIA Megatron-LM contains a vulnerability in checkpoint loading where an Attacker may cause an RCE by convincing a user to load a maliciously crafted file. A successful exploit of this vulnerability may lead to code execution, escalation of privileges, information disclosure, and data tampering.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 19.3%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2026-24152
-
cpe:2.3:a:nvidia:megatron-lm:0.11.0
-
cpe:2.3:a:nvidia:megatron-lm:0.12.0
-
cpe:2.3:a:nvidia:megatron-lm:0.12.1
-
cpe:2.3:a:nvidia:megatron-lm:0.12.2
-
cpe:2.3:a:nvidia:megatron-lm:0.12.3
-
cpe:2.3:a:nvidia:megatron-lm:0.13.0
-
cpe:2.3:a:nvidia:megatron-lm:0.13.1