Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-2998

Опубликовано: 31 мар. 2025
Источник: debian

Описание

A vulnerability was found in PyTorch 2.6.0. It has been declared as critical. Affected by this vulnerability is the function torch.nn.utils.rnn.pad_packed_sequence. The manipulation leads to memory corruption. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pytorchunfixedpackage
pytorchno-dsatrixiepackage
pytorchno-dsabookwormpackage
pytorchpostponedbullseyepackage

Примечания

  • https://github.com/pytorch/pytorch/issues/149622

  • Fixed by: https://github.com/Nicoshev/pytorch/commit/494518046816d29099b7d056a74ffa5c244fdcdd

Связанные уязвимости

CVSS3: 5.3
ubuntu
10 месяцев назад

A vulnerability was found in PyTorch 2.6.0. It has been declared as critical. Affected by this vulnerability is the function torch.nn.utils.rnn.pad_packed_sequence. The manipulation leads to memory corruption. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.

CVSS3: 5.3
nvd
10 месяцев назад

A vulnerability was found in PyTorch 2.6.0. It has been declared as critical. Affected by this vulnerability is the function torch.nn.utils.rnn.pad_packed_sequence. The manipulation leads to memory corruption. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.

msrc
3 месяца назад

PyTorch torch.nn.utils.rnn.pad_packed_sequence memory corruption

CVSS3: 5.3
github
10 месяцев назад

A vulnerability was found in PyTorch 2.6.0. It has been declared as critical. Affected by this vulnerability is the function torch.nn.utils.rnn.pad_packed_sequence. The manipulation leads to memory corruption. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used.

Уязвимость CVE-2025-2998