PT-2025-46720 · Pytorch+1 · Pytorch+1

Published

2025-11-12

·

Updated

2026-01-03

·

CVE-2025-63396

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions PyTorch versions 2.5 and 2.7.1
Description An issue exists where omitting profiler.stop() can cause torch.profiler.profile (PythonTracer) to crash or hang during finalization, potentially leading to a Denial of Service (DoS).
Recommendations Ensure profiler.stop() is called to prevent crashes or hangs during finalization for PyTorch version 2.5. Ensure profiler.stop() is called to prevent crashes or hangs during finalization for PyTorch version 2.7.1.

Exploit

Fix

DoS

Improper Locking

Weakness Enumeration

Related Identifiers

BIT-PYTORCH-2025-63396
CVE-2025-63396
PYSEC-2025-210

Affected Products

Debian
Pytorch