NVIDIA TensorRT Improper Array Index Validation Allows Code Execution
CVE-2026-24238 Published on July 14, 2026
NVIDIA TensorRT for contains a vulnerability where an attacker might cause an improper validation of array index. A successful exploit of this vulnerability might lead to code execution.
Vulnerability Analysis
CVE-2026-24238 is exploitable with local system access, requires user interaction. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to be very high.
Weakness Type
What is an out-of-bounds array index Vulnerability?
The product uses untrusted input when calculating or using an array index, but the product does not validate or incorrectly validates the index to ensure the index references a valid position within the array.
CVE-2026-24238 has been classified to as an out-of-bounds array index vulnerability or weakness.
Affected Versions
NVIDIA TensorRT:- Version v0 - v10.16.1, <= v1.3.0 rc14 is affected.