Out-of-Bounds Access in ExecuTorch Models Affects Pytorch
CVE-2025-54950
9.8CRITICAL
What is CVE-2025-54950?
An out-of-bounds access vulnerability within ExecuTorch can cause severe runtime crashes, potentially leading to code execution or other unwanted behaviors. This flaw affects all versions of ExecuTorch prior to commit fb03b6f85596a8f954d97929075335255b6a58d4, thus posing significant security risks to users relying on this tool for model processing.
Affected Version(s)
ExecuTorch 0
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
