CVE-2025-63396
published 2025-11-12CVE-2025-63396: An issue was discovered in PyTorch v2.5 and v2.7.1. Omission of profiler.stop() can cause torch.profiler.profile (PythonTracer) to crash or hang during…
PriorityP49low3.3CVSS 3.1
AVLACLPRLUINSUCNINAL
EPSS
0.12%
2.3th percentile
An issue was discovered in PyTorch v2.5 and v2.7.1. Omission of profiler.stop() can cause torch.profiler.profile (PythonTracer) to crash or hang during finalization, leading to a Denial of Service (DoS).
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | pytorch | — | — |
| linuxfoundation | pytorch | — | — |
| linuxfoundation | pytorch | — | — |
CVSS provenance
nvdv3.13.3LOWCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
osv3.3LOW
vendor_debian3.3LOW
vendor_redhat3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
pytorch: PyTorch denial of service
vendor_redhat·2025-11-12·CVSS 3.3
CVE-2025-63396 [LOW] CWE-772 pytorch: PyTorch denial of service
pytorch: PyTorch denial of service
An issue was discovered in PyTorch v2.5 and v2.7.1. Omission of profiler.stop() can cause torch.profiler.profile (PythonTracer) to crash or hang during finalization, leading to a Denial of Service (DoS).
A denial of service flaw has been discovered in PyTorch. The omission of a profiler.stop() call can cause torch.profiler.profile (PythonTracer) to crash or hang during finalization, leading to a Denial of Service (DoS).
Mitigation: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Package: openshift-lightspeed/lightspeed-ocp-rag-rhel9 (OpenShift Lightspeed) - Fix deferre
Debian
CVE-2025-63396: pytorch - An issue was discovered in PyTorch v2.5 and v2.7.1. Omission of profiler.stop() ...
vendor_debian·2025·CVSS 3.3
CVE-2025-63396 [LOW] CVE-2025-63396: pytorch - An issue was discovered in PyTorch v2.5 and v2.7.1. Omission of profiler.stop() ...
An issue was discovered in PyTorch v2.5 and v2.7.1. Omission of profiler.stop() can cause torch.profiler.profile (PythonTracer) to crash or hang during finalization, leading to a Denial of Service (DoS).
Scope: local
bookworm: open
bullseye: open
forky: open
sid: open
trixie: open
GHSA
GHSA-3w6q-rqw9-h6qx: An issue was discovered in PyTorch v2
ghsa_unreviewed·2025-11-12
CVE-2025-63396 [LOW] CWE-667 GHSA-3w6q-rqw9-h6qx: An issue was discovered in PyTorch v2
An issue was discovered in PyTorch v2.5 and v2.7.1. Omission of profiler.stop() can cause torch.profiler.profile (PythonTracer) to crash or hang during finalization, leading to a Denial of Service (DoS).
OSV
CVE-2025-63396: An issue was discovered in PyTorch v2
osv·2025-11-12·CVSS 3.3
CVE-2025-63396 [LOW] CVE-2025-63396: An issue was discovered in PyTorch v2
An issue was discovered in PyTorch v2.5 and v2.7.1. Omission of profiler.stop() can cause torch.profiler.profile (PythonTracer) to crash or hang during finalization, leading to a Denial of Service (DoS).
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-11-12
Published