Skip to content
MLflowGHSA-qpgc-w4mg-6v92

MLflow's excessive directory permissions allow local privilege escalation

High7.0CVE-2024-27134 · Published Nov 25, 2024 · updated Feb 3, 2025

Excessive directory permissions in MLflow leads to local privilege escalation when using spark_udf. This behavior can be exploited by a local attacker to gain elevated permissions by using a ToCToU attack. The issue is only relevant when the spark_udf() MLflow API is called.

GitHub advisory

Affected versions

PackageAffectedFixed in
mlflow
PyPI
< 2.16.02.16.0
Details and references
CVSS 3.1
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Severity from
GitHub (reviewed advisory)
Weakness
CWE-276
Also known as
BIT-mlflow-2024-27134, CVE-2024-27134, PYSEC-2024-224

More MLflow advisories

All MLflow
Advisory
MLflow Cross-Site Request Forgery (CSRF) vulnerability
Medium5.4Mar 20, 2025
MLflow has Weak Password Requirements
Low3.8Mar 20, 2025
MLflow Uncontrolled Resource Consumption vulnerability
Medium5.9Mar 20, 2025
MLflow has a Local File Read/Path Traversal in dbfs
High7.5Mar 20, 2025
MLflow Uncontrolled Resource Consumption vulnerability
Medium5.3Mar 20, 2025
Undefined Behavior in mlflow
Medium5.4Jun 6, 2024

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.