PyTorch susceptible to local Denial of Service
Low severity
GitHub Reviewed
Published
Mar 30, 2025
to the GitHub Advisory Database
•
Updated May 30, 2025
Description
Published by the National Vulnerability Database
Mar 30, 2025
Published to the GitHub Advisory Database
Mar 30, 2025
Reviewed
Apr 15, 2025
Last updated
May 30, 2025
A vulnerability, which was classified as problematic, has been found in PyTorch 2.6.0+cu124. Affected by this issue is the function torch.mkldnn_max_pool2d. The manipulation leads to denial of service. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.
References