Assertion Error in PyTorch Inductor During nn.Fold Operation
CVE-2025-46149
5.3MEDIUM
What is CVE-2025-46149?
A vulnerability has been identified in PyTorch versions prior to 2.7.0, which affects the indductor feature specifically during the nn.Fold operation. An assertion error may occur under certain conditions, potentially leading to unexpected behavior in applications relying on this functionality. Developers using PyTorch are advised to upgrade to version 2.7.0 or later to mitigate this issue and ensure the stability of their applications.
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
