Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-0508

Опубликовано: 20 мар. 2025
Источник: nvd
CVSS3: 5.9
EPSS Низкий

Описание

A vulnerability in the SageMaker Workflow component of aws/sagemaker-python-sdk allows for the possibility of MD5 hash collisions in all versions. This can lead to workflows being inadvertently replaced due to the reuse of results from different configurations that produce the same MD5 hash. This issue can cause integrity problems within the pipeline, potentially leading to erroneous processing outcomes.

EPSS

Процентиль: 17%
0.00053
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-328

Связанные уязвимости

CVSS3: 5.9
github
11 месяцев назад

SageMaker Workflow component allows possibility of MD5 hash collisions

EPSS

Процентиль: 17%
0.00053
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-328