PyTorchPYSEC-2024-259
In PyTorch <=2.4.1, the RemoteModule has Deserialization RCE. NOTE: this is disputed by multiple parties because this is intended behavior in PyTorch distributed computing.
Critical9.8CVE-2024-48063 · Published Oct 29, 2024 · updated Jul 16, 2025
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| torch PyPI | < 2.5.0 | 2.5.0 |
Details and references
In PyTorch <=2.4.1, the RemoteModule has Deserialization RCE. NOTE: this is disputed by multiple parties because this is intended behavior in PyTorch distributed computing.
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity from
- the CVSS score
- Also known as
- BIT-pytorch-2024-48063, CVE-2024-48063
- rumbling-slice-eb0.notion.site/Distributed-RPC-Framework-RemoteModule-has-Deserialization-RCE-in-pytorch-pytorch-111e3cda9e8c8021a7d3cbc61ee1a20c
- github.com/pytorch/pytorch/issues/129228
- gist.github.com/hexian2001/c046c066895a963ecc0a2cf9e1180065
- github.com/pytorch/pytorch/security/policy#using-distributed-features
More PyTorch advisories
All PyTorch| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Mar 102025 | PyTorch Tuple Handler is Vulnerable to Memory Corruption through Manipulation of None Argument CVE-2025-2148Low5.0no fix yet | Low5.0 | No fix yet |
| Mar 102025 | PyTorch: Manipulation of the argument scale/zero_point leads to improper initialization via Quantized Sigmoid Module CVE-2025-2149Low2.5no fix yet | Low2.5 | No fix yet |
| Mar 302025 | PyTorch susceptible to local Denial of Service CVE-2025-2953Low3.3fixed in 2.7.1-rc1 | Low3.3 | 2.7.1-rc1 |
| Mar 312025 | PyTorch is Vulnerable to Memory Consumption through pad_packed_sequence Function CVE-2025-2998Medium5.3no fix yet | Medium5.3 | No fix yet |
| Mar 312025 | PyTorch is vulnerable to memory corruption through its torch.jit.script function CVE-2025-3000Low5.3fixed in 2.13.0 | Low5.3 | 2.13.0 |
| Mar 312025 | PyTorch is vulnerable to memory corruption through its unpack_sequence function CVE-2025-2999Medium5.3fixed in 2.9.1 | Medium5.3 | 2.9.1 |