Junglewise Threat Intelligence

CVE-2026-65082: NVIDIA NemoClaw migration command code injection

CVE-2026-65082 · Severity: high · CVSS 7 · Published 2026-08-25

Technologies: Nvidia Nemoclaw, Linux Kernel. Vendors: Nvidia, Linux.

Executive brief

NVIDIA NemoClaw is a Linux utility that includes a migration command vulnerable to code injection by local attackers. An exploit could allow an attacker to execute arbitrary code, access sensitive data, modify files, or disrupt service availability on affected systems.

Technical details

NemoClaw for Linux contains a code injection vulnerability in its migration command. The vulnerability is reachable by a local attacker and requires local access to exploit. A successful exploit allows remote code execution, enabling data tampering, information disclosure, and denial of service. The exact root cause and patch status are not detailed in the available advisory text.

Affected products

  • NVIDIA NemoClaw <UNKNOWN>

Timeline

  • 2026-08-25: disclosed

References

Related threats