PT-2025-32319 · Unknown · Executorch

Published

2025-08-07

·

Updated

2025-08-08

·

CVE-2025-30404

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ExecuTorch versions prior to d158236b1dc84539c1b16843bc74054c9dcba006
Description An integer overflow in the loading of ExecuTorch models can lead to overlapping allocations, potentially resulting in code execution.
Recommendations Update ExecuTorch to a version after commit d158236b1dc84539c1b16843bc74054c9dcba006.

Fix

Integer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-30404
GHSA-HJ95-MHGF-JXC4

Affected Products

Executorch