NVIDIA Cumulus Linux contains a vulnerability in the Link Layer Discovery Protocol (LLDP) daemon component, where an unauthenticated attacker on an adjacent network could cause buffer overflow by sending crafted LLDP frames. A successful exploit of this vulnerability might lead to code execution.
References
| Link | Resource |
|---|---|
| https://github.com/NVIDIA/product-security/tree/main/2026/5817 | Patch |
| https://nvd.nist.gov/vuln/detail/CVE-2026-24184 | US Government Resource |
| https://www.cve.org/CVERecord?id=CVE-2026-24184 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-08-18 19:16
Updated : 2026-09-02 15:06
NVD link : CVE-2026-24184
Mitre link : CVE-2026-24184
CVE.ORG link : CVE-2026-24184
JSON object : View
Products Affected
nvidia
- cumulus_linux
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
