PT-2025-14562 · Pytorch+1 · Pytorch+1

Default436352

·

Published

2025-04-02

·

Updated

2025-05-28

·

CVE-2025-3121

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions PyTorch version 2.6.0
Description A problematic vulnerability has been found in PyTorch, affecting the function torch.jit.jit module from flatbuffer. This issue leads to memory corruption and requires local access to exploit. The exploit has been publicly disclosed.
Recommendations For PyTorch version 2.6.0, as a temporary workaround, consider disabling the torch.jit.jit module from flatbuffer function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Weakness Enumeration

Related Identifiers

BIT-PYTORCH-2025-3121
CVE-2025-3121
PYSEC-2025-196

Affected Products

Debian
Pytorch