GHSA-3749-ghw9-m3mgLowCVSS 3.3

PyTorch susceptible to local Denial of Service

Published
March 30, 2025
Last Modified
June 8, 2026

🔗 CVE IDs covered (1)

📋 Description

A vulnerability, which was classified as problematic, has been found in PyTorch 2.6.0+cu124. Affected by this issue is the function torch.mkldnn_max_pool2d. The manipulation leads to denial of service. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.

🎯 Affected products1

  • pip/torch:< 2.7.1-rc1

🔗 References (9)