NVIDIA Triton Inference Server for Windows and Linux contains a vulnerability where multiple requests could cause a double free when a stream is cancelled before it is processed. A successful exploit of this vulnerability might lead to denial of service.
The product calls free() twice on the same memory address.
Link | Tags |
---|---|
https://nvd.nist.gov/vuln/detail/CVE-2025-23322 | us government resource |
https://www.cve.org/CVERecord?id=CVE-2025-23322 | third party advisory |
https://nvidia.custhelp.com/app/answers/detail/a_id/5687 | vendor advisory |