Security Bulletin: NVIDIA TensorRT-LLM - May 2026
details
- Finding IDs
- F-TRTLLM-DESER-001
- Status
- fixed publicly (mapped to unsafe deserialization class)
- Reported via
- NVIDIA security contact
- Note
- NVIDIA TensorRT-LLM May 2026 bulletin lists unsafe deserialization CVE-2025-33255 and CVE-2026-24163 as fixed for versions prior to v1.2, and recommends TensorRT-LLM v1.2.1. this is mapped to F-TRTLLM-DESER-001 if the private report corresponds to the unsafe deserialization class; public acknowledgement credits a different reporter, so this is tracked as reported-fix mapping rather than public CVE credit.
F-TRTLLM-DESER-001: Needs source detail. The bulletin-to-report mapping is conditional and cannot establish this exact finding's mechanism. Reviewed 24 Sep 2026. Mechanism assessed by 1seal.
Mechanism source for F-TRTLLM-DESER-001
Security area (1seal assessment): Unclassified. The public bulletin-to-finding mapping is conditional and the bulletin could not be retrieved during this review. Its general deserialization class is not enough to classify this exact report. Reviewed 24 Sep 2026.