Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-2999

Опубликовано: 31 мар. 2025
Источник: debian
EPSS Низкий

Описание

A vulnerability was found in PyTorch 2.6.0. It has been rated as critical. Affected by this issue is the function torch.nn.utils.rnn.unpack_sequence. The manipulation leads to memory corruption. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pytorchfixed2.12.0+dfsg2-1package
pytorchno-dsatrixiepackage
pytorchno-dsabookwormpackage
pytorchpostponedbullseyepackage

Примечания

  • https://github.com/pytorch/pytorch/issues/149622

  • Fixed by: https://github.com/Nicoshev/pytorch/commit/494518046816d29099b7d056a74ffa5c244fdcdd

EPSS

Процентиль: 8%
0.00185
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 1 года назад

A vulnerability was found in PyTorch 2.6.0. It has been rated as critical. Affected by this issue is the function torch.nn.utils.rnn.unpack_sequence. The manipulation leads to memory corruption. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

CVSS3: 5.3
nvd
больше 1 года назад

A vulnerability was found in PyTorch 2.6.0. It has been rated as critical. Affected by this issue is the function torch.nn.utils.rnn.unpack_sequence. The manipulation leads to memory corruption. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

CVSS3: 5.3
github
больше 1 года назад

PyTorch is vulnerable to memory corruption through its unpack_sequence function

EPSS

Процентиль: 8%
0.00185
Низкий