← Zurück zur CVE-Suche

CVE-2026-65918

PyTorch torchvision

Beschreibung

PyTorch torchvision through 0.28.0, fixed in commit 4e05dc2, contains an out-of-bounds heap read vulnerability in the GIF decoder-s read_from_tensor callback that passes unclamped length to memcpy. Attackers can supply malicious or truncated GIF files to cause denial of service via segmentation fault or disclose adjacent heap memory contents.

CVSS 7.1EPSS 0.312%Risiko 0.73
Quelle öffnen
Veröffentlicht
2026-07-23 18:17:02
Betroffene Versionen
<=0.28.0
Typ
Bibliothek
Zuletzt geändert
2026-07-23 19:17:05
Vektor
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H