NVIDIA WebDataset Arbitrary Code Execution Vulnerability with Elevated Permissions

Vulnerability

A vulnerability in NVIDIA WebDataset, applicable to all platforms, allows an attacker to execute arbitrary code with elevated permissions. This exploitation could lead to unauthorized privilege escalation, data tampering, information disclosure, and denial-of-service conditions.

Impact

Exploitation of this vulnerability could result in arbitrary code execution with elevated privileges, allowing for unauthorized access to system resources and potential manipulation of data. Additionally, such an exploit could disrupt service availability.

Remediation

Users are advised to update to any code branch that includes the GitHub commit 9e95f50. For more information, visit the NVIDIA Product Security page.

Added: Aug 13, 2025, 10:07 PM
Updated: Aug 13, 2025, 10:07 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
5.2
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.