PyTorchPYSEC-2024-250
Pytorch before v2.2.0 has an Out-of-bounds Read vulnerability via the component torch/csrc/jit/mobile/flatbuffer_loader.cpp.
Medium5.5CVE-2024-31584 · Published Apr 19, 2024 · updated Jun 4, 2025
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| torch PyPI | < 2.2.0 | 2.2.0 |
Changes since it was listed
| Date | Change |
|---|---|
| Sep 24 | Severity: Unrated to Medium |
Details and references
Pytorch before v2.2.0 has an Out-of-bounds Read vulnerability via the component torch/csrc/jit/mobile/flatbuffer_loader.cpp.
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L
- Severity from
- NVD
- Also known as
- BIT-pytorch-2024-31584, CVE-2024-31584
More PyTorch advisories
All PyTorch| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Apr 172024 | PyTorch heap buffer overflow vulnerability CVE-2024-31580High7.5fixed in 2.2.0 | High7.5 | 2.2.0 |
| Apr 172024 | Pytorch use-after-free vulnerability CVE-2024-31583High7.8fixed in 2.2.0 | High7.8 | 2.2.0 |
| Oct 292024 | In PyTorch <=2.4.1, the RemoteModule has Deserialization RCE. NOTE: this is disputed by multiple parties because this is intended behavior in PyTorch distributed computing. CVE-2024-48063Critical9.8fixed in 2.5.0 | Critical9.8 | 2.5.0 |
| Mar 102025 | PyTorch Tuple Handler is Vulnerable to Memory Corruption through Manipulation of None Argument CVE-2025-2148Low5.0no fix yet | Low5.0 | No fix yet |
| Mar 102025 | PyTorch: Manipulation of the argument scale/zero_point leads to improper initialization via Quantized Sigmoid Module CVE-2025-2149Low2.5no fix yet | Low2.5 | No fix yet |
| Mar 302025 | PyTorch susceptible to local Denial of Service CVE-2025-2953Low3.3fixed in 2.7.1-rc1 | Low3.3 | 2.7.1-rc1 |