CVE-2025-33244

Published Mar 24, 2026

Last updated 2 months ago

Overview

AI description

Automated description summarized from trusted sources.

CVE-2025-33244 describes a vulnerability found in NVIDIA APEX for Linux. This flaw allows an unauthorized attacker to trigger a deserialization of untrusted data. The vulnerability specifically impacts environments utilizing PyTorch versions older than 2.6. Exploitation of this issue could potentially result in code execution, denial of service, escalation of privileges, data tampering, and information disclosure.

Description
NVIDIA APEX for Linux contains a vulnerability where an unauthorized attacker could cause a deserialization of untrusted data. This vulnerability affects environments that use PyTorch versions earlier than 2.6. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, data tampering, and information disclosure.
Source
psirt@nvidia.com
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
9
Impact score
6
Exploitability score
2.3
Vector string
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

psirt@nvidia.com
CWE-502

Social media

Hype score
Not currently trending
  1. NVIDIA 製品群の複数の深刻な脆弱性が FIX:任意のコード実行/DoS 攻撃などの恐れ https://t.co/xDzHbN0LKQ 今回の NVIDIA のセキュリティ更新は、AI 開発に欠かせない NVIDIA Apex などのライブラリに存在する、深刻な脆弱

    @iototsecnews

    2 Apr 2026

    221 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. 📌 NVIDIA تعالج ثغرة RCE حرجة (CVE-2025-33244) في مكتبة Apex أصدرت NVIDIA تحديثًا أمنيًا عاجلاً لمكتبة Apex لمعالجة ثغرة تنفيذ تعليمات برمجية عن بعد (RCE) حرجة، برمز CVE-2025-33244 و

    @MisbarSec

    26 Mar 2026

    175 Impressions

    1 Retweet

    4 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. AIインフラストラクチャにリスク:NVIDIAがApexライブラリの重大な9.0リモートコード実行脆弱性(CVE-2025-33244)を修正 AI Infrastructure at Risk: NVIDIA Fixes Critical 9.0 RCE Flaw in Apex Library (CVE-2025-33244) #DailyCyberSecurity (Mar 2

    @foxbook

    26 Mar 2026

    307 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. NVIDIA patches a critical 9.0 CVSS vulnerability (CVE-2025-33244) in the Apex library. Protect your AI models from RCE—upgrade to PyTorch 2.6+ now. #NVIDIA #Apex #CyberSecurity #AISecurity #PyTorch #RCE #InfoSec #Linux #Vulnerability #MachineLearning https://t.co/l5gWwniyMX h

    @the_yellow_fall

    25 Mar 2026

    472 Impressions

    1 Retweet

    3 Likes

    2 Bookmarks

    0 Replies

    0 Quotes

  5. CVE-2025-33244 NVIDIA APEX Linux Deserialization Vulnerability Enables Unauthorized Code Execution https://t.co/VaShHtzjTf

    @VulmonFeeds

    25 Mar 2026

    86 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. 🔴 CVE-2025-33244 - Critical NVIDIA APEX for Linux contains a vulnerability where an unauthorized attacker could cause a deserialization of untrusted data. This vulnerability affects environments that use PyTorch ver... https://t.co/rGjtAmG0Y0 https://t.co/FLiHMcIK7A

    @TheHackerWire

    24 Mar 2026

    148 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. [CVE-2025-33244: CRITICAL] Warning: NVIDIA APEX for Linux has a critical vulnerability allowing attackers to execute code, cause denial of service, and more. Update PyTorch to version 2.6+ for protection.#cve,CVE-2025-33244,#cybersecurity https://t.co/wxoD89TYnS

    @CveFindCom

    24 Mar 2026

    116 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. 🚨 CVE-2025-33244: NVIDIA (CVSS: 9.0)... Pickle deserialization in NVIDIA APEX hits every PyTorch <2.6 deployment - RCE with adjacent network access and low pri... https://t.co/eruCp9auKJ #netsec #vulnerability #CVE #sysadmin #zeroday

    @0dayPublishing

    24 Mar 2026

    181 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes