CNNVD-202508-719 Information

CNNVD ID

CNNVD-202508-719

CVE-2025-30404

  • CNNVD Published: 2025-08-07

Description (Chinese)

executorch是pytorch开源的一个PyTorch的部署工具。 executorch存在安全漏洞,该漏洞源于整数溢出导致内存分配重叠,可能导致执行任意代码。

Description (English)

Executorch is a PyTorch deployment tool for pytorch. There is a security loophole in executorch, which stems from an integer spill that leads to an overlap in the distribution of memory, which may lead to the implementation of arbitrary codes.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

PyTorch

Published

2025-08-07

Last Modified

2026-02-24

References

https://github.com/pytorch/executorch/commit/d158236b1dc84539c1b16843bc74054c9dcba006 https://www.facebook.com/security/advisories/cve-2025-30404 https://access.redhat.com/security/cve/cve-2025-30404

Share on: