Описание
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, a path traversal vulnerability via symlink allows to read arbitrary files outside model or user-provided directory. This issue has been patched in version 1.21.0.
A flaw was found in Open Neural Network Exchange (ONNX), an open standard for machine learning interoperability. This path traversal vulnerability, exploitable via a symbolic link (symlink), allows an attacker to read arbitrary files located outside of the intended model or user-provided directories. This could lead to unauthorized information disclosure.
Отчет
This Important flaw in Open Neural Network Exchange (ONNX) affects Red Hat OpenShift AI. An attacker could exploit a path traversal vulnerability through a crafted symbolic link within an ONNX model, leading to unauthorized disclosure of files outside the model's designated directories. This risk is present when processing untrusted ONNX models.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat OpenShift AI (RHOAI) | rhoai/odh-openvino-model-server-rhel9 | Affected | ||
| Red Hat OpenShift AI 2.25 | rhoai/odh-pipeline-runtime-datascience-cpu-py312-rhel9 | Fixed | RHSA-2026:24977 | 10.06.2026 |
| Red Hat OpenShift AI 2.25 | rhoai/odh-pipeline-runtime-pytorch-cuda-py312-rhel9 | Fixed | RHSA-2026:24977 | 10.06.2026 |
| Red Hat OpenShift AI 2.25 | rhoai/odh-pipeline-runtime-pytorch-llmcompressor-cuda-py312-rhel9 | Fixed | RHSA-2026:24977 | 10.06.2026 |
| Red Hat OpenShift AI 2.25 | rhoai/odh-pipeline-runtime-pytorch-rocm-py312-rhel9 | Fixed | RHSA-2026:24977 | 10.06.2026 |
| Red Hat OpenShift AI 2.25 | rhoai/odh-pipeline-runtime-tensorflow-cuda-py312-rhel9 | Fixed | RHSA-2026:24977 | 10.06.2026 |
| Red Hat OpenShift AI 2.25 | rhoai/odh-pipeline-runtime-tensorflow-rocm-py312-rhel9 | Fixed | RHSA-2026:24977 | 10.06.2026 |
| Red Hat OpenShift AI 2.25 | rhoai/odh-workbench-codeserver-datascience-cpu-py312-rhel9 | Fixed | RHSA-2026:24977 | 10.06.2026 |
| Red Hat OpenShift AI 2.25 | rhoai/odh-workbench-jupyter-datascience-cpu-py312-rhel9 | Fixed | RHSA-2026:24977 | 10.06.2026 |
| Red Hat OpenShift AI 2.25 | rhoai/odh-workbench-jupyter-pytorch-cuda-py312-rhel9 | Fixed | RHSA-2026:24977 | 10.06.2026 |
Показывать по
Дополнительная информация
Статус:
8.6 High
CVSS3
Связанные уязвимости
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, a path traversal vulnerability via symlink allows to read arbitrary files outside model or user-provided directory. This issue has been patched in version 1.21.0.
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, a path traversal vulnerability via symlink allows to read arbitrary files outside model or user-provided directory. This issue has been patched in version 1.21.0.
Open Neural Network Exchange (ONNX) is an open standard for machine le ...
8.6 High
CVSS3