Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-2148

Опубликовано: 10 мар. 2025
Источник: nvd
CVSS3: 5
CVSS3: 7.5
CVSS2: 5.1
EPSS Низкий

Описание

A vulnerability was found in PyTorch 2.6.0+cu124. It has been declared as critical. Affected by this vulnerability is the function torch.ops.profiler._call_end_callbacks_on_jit_fut of the component Tuple Handler. The manipulation of the argument None leads to memory corruption. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:pytorch:pytorch:2.6.0\+cu124:*:*:*:*:*:*:*

EPSS

Процентиль: 36%
0.00155
Низкий

5 Medium

CVSS3

7.5 High

CVSS3

5.1 Medium

CVSS2

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 5
ubuntu
11 месяцев назад

A vulnerability was found in PyTorch 2.6.0+cu124. It has been declared as critical. Affected by this vulnerability is the function torch.ops.profiler._call_end_callbacks_on_jit_fut of the component Tuple Handler. The manipulation of the argument None leads to memory corruption. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult.

CVSS3: 5
debian
11 месяцев назад

A vulnerability was found in PyTorch 2.6.0+cu124. It has been declared ...

CVSS3: 5
github
11 месяцев назад

A vulnerability was found in PyTorch 2.6.0+cu124. It has been declared as critical. Affected by this vulnerability is the function torch.ops.profiler._call_end_callbacks_on_jit_fut of the component Tuple Handler. The manipulation of the argument None leads to memory corruption. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult.

EPSS

Процентиль: 36%
0.00155
Низкий

5 Medium

CVSS3

7.5 High

CVSS3

5.1 Medium

CVSS2

Дефекты

CWE-119