DeepSpeedGHSA-8cp5-3rf8-8gfh
DeepSpeed Remote Code Execution Vulnerability
High8.4CVE-2024-43497 · Published Oct 8, 2024 · updated Oct 18, 2024
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| deepspeed PyPI | < 0.15.1 | 0.15.1 |
Details and references
DeepSpeed Remote Code Execution Vulnerability
- CVSS 3.1
- CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity from
- GitHub (reviewed advisory)
- Weakness
- CWE-77
- Also known as
- CVE-2024-43497, PYSEC-2024-109