logo

NVIDIA Fixes High-Severity Flaws in KAI Scheduler and CUDA-Q

ID: 6ac82e9f-da45-539c-b162-24be00707656

STIX ID: report--6ac82e9f-da45-539c-b162-24be00707656

Feed Name: securityonline.info

Threat Score
70/100

Date Published: 2026-04-22

Date Updated: 2026-04-23

Author: Ddos

...
...

NVIDIA released updates addressing several vulnerabilities in KAI Scheduler (affecting versions prior to 0.13.0) and CUDA-Q (affecting versions prior to 0.14.0), including CVE-2026-24177 (API authorization, CVSS 7.7), CVE-2026-24176 (cross-namespace authorization, CVSS 4.3), and CVE-2026-24189 (out-of-bounds read, unauthenticated, CVSS 8.2). The flaws can lead to information disclosure, data tampering, and denial-of-service against GPU-accelerated workloads; users are advised to update to KAI Scheduler v0.13.0+ and CUDA-Q v0.14.0+ from the official repositories.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.