Skip to content
PyTorchPYSEC-2024-259

In PyTorch <=2.4.1, the RemoteModule has Deserialization RCE. NOTE: this is disputed by multiple parties because this is intended behavior in PyTorch distributed computing.

Critical9.8CVE-2024-48063 · Published Oct 29, 2024 · updated Jul 16, 2025

Source advisory

Affected versions

PackageAffectedFixed in
torch
PyPI
< 2.5.02.5.0
Details and references

In PyTorch <=2.4.1, the RemoteModule has Deserialization RCE. NOTE: this is disputed by multiple parties because this is intended behavior in PyTorch distributed computing.

CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity from
the CVSS score
Also known as
BIT-pytorch-2024-48063, CVE-2024-48063

More PyTorch advisories

All PyTorch
DateAdvisory
Mar 102025PyTorch Tuple Handler is Vulnerable to Memory Corruption through Manipulation of None Argument
CVE-2025-2148Low5.0no fix yet
Mar 102025PyTorch: Manipulation of the argument scale/zero_point leads to improper initialization via Quantized Sigmoid Module
CVE-2025-2149Low2.5no fix yet
Mar 302025PyTorch susceptible to local Denial of Service
CVE-2025-2953Low3.3fixed in 2.7.1-rc1
Mar 312025PyTorch is Vulnerable to Memory Consumption through pad_packed_sequence Function
CVE-2025-2998Medium5.3no fix yet
Mar 312025PyTorch is vulnerable to memory corruption through its torch.jit.script function
CVE-2025-3000Low5.3fixed in 2.13.0
Mar 312025PyTorch is vulnerable to memory corruption through its unpack_sequence function
CVE-2025-2999Medium5.3fixed in 2.9.1

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.