Brutkey

cR0w
@cR0w@infosec.exchange

【L. O. L.】


https://www.cve.org/CVERecord?id=CVE-2025-23311

NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a stack overflow through specially crafted HTTP requests. A successful exploit of this vulnerability might lead to remote code execution, denial of service, information disclosure, or data tampering.


AA
@AAKL@infosec.exchange

@cR0w@infosec.exchange I think they fixed it: https://nvidia.custhelp.com/app/answers/detail/a_id/5687

cR0w
@cR0w@infosec.exchange

@AAKL@infosec.exchange Yeah but come on, stack overflows in this the year of our Sasquatch 2025? From an org that size that is supposed to be ushering in all the newest fads? Pathetic.

AA
@AAKL@infosec.exchange

@cR0w@infosec.exchange AI will save the day. 😅😅

David
@deFractal@infosec.exchange

@AAKL@infosec.exchange @cR0w@infosec.exchange I wonder whether AI wrote that code. If so, presumably, the LLM was trained on all the stack overflows and other classic security defects in the history of published C code.

cR0w
@cR0w@infosec.exchange

@AAKL@infosec.exchange