Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rrmf-rvhw-rf47

Опубликовано: 31 мар. 2025
Источник: github
Github: Прошло ревью
CVSS4: 1.9
CVSS3: 5.3

Описание

PyTorch is vulnerable to memory corruption through its torch.jit.script function

A vulnerability classified as critical has been found in PyTorch 2.6.0. This affects the function torch.jit.script. The manipulation leads to memory corruption. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.

Пакеты

Наименование

torch

pip
Затронутые версииВерсия исправления

<= 2.12.1

2.13.0

EPSS

Процентиль: 8%
0.00183
Низкий

1.9 Low

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 1 года назад

A vulnerability classified as critical has been found in PyTorch 2.6.0. This affects the function torch.jit.script. The manipulation leads to memory corruption. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.

CVSS3: 5.3
nvd
больше 1 года назад

A vulnerability classified as critical has been found in PyTorch 2.6.0. This affects the function torch.jit.script. The manipulation leads to memory corruption. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.

CVSS3: 5.3
debian
больше 1 года назад

A vulnerability classified as critical has been found in PyTorch 2.6.0 ...

EPSS

Процентиль: 8%
0.00183
Низкий

1.9 Low

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-119