New NVIDIA Triton AI Server Bugs Allow Full Remote System Takeover

Critical Security Flaws in NVIDIA Triton Inference Server Allow Remote Takeover of AI Systems

  • Researchers disclosed serious security issues in the NVIDIA Triton Inference Server used for AI models.
  • The vulnerabilities could allow attackers to take full control of servers remotely and without credentials.
  • Three flaws in the server’s Python backend could be chained for remote code execution or data theft.
  • NVIDIA fixed the issues in version 25.07 and addressed three additional critical bugs.
  • There are no reports of attacks so far, but users are urged to update for protection.

A set of security flaws was recently found in the NVIDIA Triton Inference Server, an open-source platform that runs Artificial Intelligence (AI) models at scale on Windows and Linux. According to researchers at Wiz, these problems could let a remote attacker take over a vulnerable server, gaining full control without needing to log in.

- Advertisement -

The three main vulnerabilities, identified as CVE-2025-23319 (CVSS 8.1), CVE-2025-23320 (CVSS 7.5), and CVE-2025-23334 (CVSS 5.9), affect the Triton server’s Python backend. One flaw allows out-of-bounds writing, another can exceed the server’s memory limits, and the third enables reading out-of-bounds memory. Together, these issues could result in attackers executing their own code, denying service, or stealing information.

“When chained together, these flaws can potentially allow a remote, unauthenticated attacker to gain complete control of the server, achieving remote code execution (RCE),” explained Wiz’s Ronen Shustin and Nir Ohfeld in their report.

The vulnerabilities are rooted in how the Python backend handles requests for AI models from frameworks like PyTorch and TensorFlow. Attackers could use one weakness to leak the server’s private memory region name, then apply the other flaws to take over the system. This risk includes theft of AI models, exposure of sensitive data, or changing the results that AI models generate.

In its August security bulletin, NVIDIA also addressed three additional issues: CVE-2025-23310, CVE-2025-23311, and CVE-2025-23317. These could let attackers execute their own code, cause denial of service, expose information, or tamper with data if left patched.

There is no current evidence of these vulnerabilities being used in real attacks. Users of the Triton Inference Server are advised to update to version 25.07 or later for full protection.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

- Advertisement -

Previous Articles:

Stay in the Loop

Get exclusive crypto insights, breaking news, and market analysis delivered straight to your inbox. No fluff, just facts.

    1 Email per day. Unsubscribe at any time.

    - Advertisement -

    Latest News

    Shiba Inu Needs 517 Trillion Tokens Burned to Reach $0.0001

    Shiba Inu (SHIB) currently trades around 86% below its all-time high from October 2021. To...

    Nakamoto CEO Plans $200M PAC to Advance Bitcoin in US Politics

    David Bailey of Nakamoto plans to create a political action committee (PAC) to support...

    Figure Technology Solutions Files Confidential Paperwork for 2024 IPO

    Figure Technology Solutions has submitted confidential paperwork to the U.S. SEC for a proposed...

    Cardano Community Approves $71M Upgrade, Unlocking 96M ADA

    Cardano community approved a $71 million network upgrade funded from its treasury.The vote unlocked...

    CACEIS Invests in Kriptown as Lise Seeks EU DLT License

    CACEIS, a part of Crédit Agricole, has made a minority investment in French tokenization...

    Must Read

    A Beginner’s Guide To Cryptocurrency Mining

    Cryptocurrency is considered one of the most popular forms of financial assets today. Many of these digital assets operate within blockchain technology which works...