NVIDIA NeMo Framework
cpe:2.3:a:nvidia:nemo:*:*:*:*:*:*:*
- < 2.5.3
A vulnerability has been identified in the NVIDIA NeMo Framework related to model loading. This issue could enable an attacker to exploit improper control mechanisms by having a user load a maliciously crafted file. Exploitation of this vulnerability could result in code execution, unauthorized privilege escalation, denial of service, and data tampering.
Exploitation of this vulnerability could lead to code execution, escalation of privileges, denial of service, and unauthorized data modification.
Users are advised to update to version 2.5.3 or later. The updated version is available on the NVIDIA NeMo Framework GitHub releases page and through the Python Package Index (PyPI).
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.