CNNVD-202601-4919 Information

CNNVD ID

CNNVD-202601-4919

CVE-2025-71008

  • CNNVD Published: 2026-01-29

Description (Chinese)

Oneflow是Oneflow开源的一个深度学习框架。 Oneflow 0.9.0版本存在安全漏洞,该漏洞源于oneflow._oneflow_internal.autograd.Function.FunctionCtx.mark_non_differentiable组件存在分段违规,可能导致拒绝服务攻击。

Description (English)

OneFlow is an in-depth learning framework for OneFlow open source. Oneflow version 0.9.0 has a security loophole, which originates from oneflow. oneflow international.autograd.Function.FunctionCtx.mark non differentiable components, which may lead to a denial of service attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Oneflow

Published

2026-01-29

Last Modified

2026-02-24

References

https://github.com/Daisy2ang https://github.com/Oneflow-Inc/oneflow/issues/10651

Patch

https://github.com/Oneflow-Inc/oneflow/releases

Share on: