Description
pytorch v2.8.0 was discovered to contain an integer overflow in the component torch.nan_to_num-.long().
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:LExploitability: 3.9 | Impact: 1.4Attack Vector: Network
Complexity: Low
Privileges: None
User Interaction: None
Scope: Unchanged
Confidentiality: None
Integrity: None
Availability: Low
Affected Packages12 packages
🔴Vulnerability Details
2GHSAGHSA-f9wh-qr6g-v2h4: pytorch v2↗2025-09-25 ▶ OSVCVE-2025-55554: pytorch v2↗2025-09-25 ▶ 📋Vendor Advisories
3Red Hattorch: PyTorch integer overflow↗2025-09-25 ▶ Microsoftpytorch v2.8.0 was discovered to contain an integer overflow in the component torch.nan_to_num-.long().↗2025-09-09 ▶ DebianCVE-2025-55554: pytorch - pytorch v2.8.0 was discovered to contain an integer overflow in the component to...↗2025 ▶