Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-2148

Опубликовано: 10 мар. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5.1
CVSS3: 5

Описание

A vulnerability was found in PyTorch 2.6.0+cu124. It has been declared as critical. Affected by this vulnerability is the function torch.ops.profiler._call_end_callbacks_on_jit_fut of the component Tuple Handler. The manipulation of the argument None leads to memory corruption. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult.

РелизСтатусПримечание
devel

needs-triage

esm-apps/jammy

needs-triage

esm-infra/focal

DNE

focal

DNE

jammy

needs-triage

noble

DNE

oracular

ignored

end of life, was needs-triage
plucky

needs-triage

questing

needs-triage

upstream

needs-triage

Показывать по

EPSS

Процентиль: 36%
0.00155
Низкий

5.1 Medium

CVSS2

5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5
nvd
11 месяцев назад

A vulnerability was found in PyTorch 2.6.0+cu124. It has been declared as critical. Affected by this vulnerability is the function torch.ops.profiler._call_end_callbacks_on_jit_fut of the component Tuple Handler. The manipulation of the argument None leads to memory corruption. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult.

CVSS3: 5
debian
11 месяцев назад

A vulnerability was found in PyTorch 2.6.0+cu124. It has been declared ...

CVSS3: 5
github
11 месяцев назад

A vulnerability was found in PyTorch 2.6.0+cu124. It has been declared as critical. Affected by this vulnerability is the function torch.ops.profiler._call_end_callbacks_on_jit_fut of the component Tuple Handler. The manipulation of the argument None leads to memory corruption. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult.

EPSS

Процентиль: 36%
0.00155
Низкий

5.1 Medium

CVSS2

5 Medium

CVSS3