NVIDIA released security updates for its Linux-based Triton Inference Server addressing two high-severity vulnerabilities that could enable denial of service, information disclosure, and data tampering. The flaws affect AI-inference infrastructure, making timely remediation important for organizations that expose or rely on Triton workloads.
The Canadian Centre for Cyber Security identified affected Triton version ranges as 0.0 through 26.03 and 0.0 through 26.06, and advised administrators to review NVIDIA’s security bulletin and product-security guidance and apply available updates. The advisories did not disclose CVE identifiers, technical vulnerability details, specific fixed versions, or evidence of active exploitation.

Track how attackers are adapting to this technology.
5 events from the most recent confirmed update back to the earliest known activity.
The Canadian Centre for Cyber Security issued advisory AV26-900 regarding vulnerabilities in NVIDIA Triton Inference Server. It identified versions through 26.03 and 26.06 as affected and urged users to review NVIDIA guidance and apply updates.
NVIDIA released a Linux Triton Inference Server update addressing two high-severity vulnerabilities. Their impacts include denial of service, information disclosure, and data tampering.
Arm published an advisory covering nine Mali GPU vulnerabilities and released fixes for Valhall and Arm 5th Gen GPU Architecture kernel and userspace drivers. The issues may permit use-after-free access, kernel-information exposure, or denial of service; Bifrost drivers are also affected.
AMD published a security advisory for CVE-2026-43603, reported by Maxime Rossi Bellom and Ramtine Tofighi Shirazi of SecMate. The flaw can be triggered through a graphics-memory-management clear operation under certain compute-processing conditions.
AMD released fixes in July 2026 for CVE-2026-43603 affecting EPYC, Athlon, Ryzen, Radeon, and Instinct products. The NULL-pointer dereference in the Linux GPU kernel driver can crash systems and cause denial of service.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
5 references tracked. Mallory keeps watching after this page renders.
securityweek.com
Open sourcemalware.news
Open sourcecyber.gc.ca
Open sourcecirt.gy
Open sourcenvidia.custhelp.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.