PT-2025-39383 · Pytorch+1 · Pytorch+1

Published

2024-12-11

·

Updated

2025-10-05

·

CVE-2025-46153

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions PyTorch versions prior to 3.7.0
Description The software contains an inconsistency in the bernoulli p decompose function within decompositions.py. This function does not fully align with the eager CPU implementation, which impacts the functionality of nn.Dropout1d, nn.Dropout2d, and nn.Dropout3d when fallback random is set to True.
Recommendations Update to version 3.7.0 or later.

Fix

Weakness Enumeration

Related Identifiers

BDU:2025-13134
BIT-PYTORCH-2025-46153
CVE-2025-46153
PYSEC-2025-202

Affected Products

Debian
Pytorch