CVE-2025-3136: PyTorch CUDACachingAllocator.cpp torch.cuda.memory.caching_allocator_delete memory corruption
A vulnerability, which was classified as problematic, has been found in PyTorch 2.6.0. This issue affects the function torch.cuda.memory.cachingallocatordelete of the file c10/cuda/CUDACachingAllocator.cpp. The manipulation leads to memory corruption. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3136?
CVE-2025-3136 is classified as a problematic vulnerability affecting PyTorch 2.6.0.
What type of vulnerability is CVE-2025-3136?
CVE-2025-3136 is a memory corruption vulnerability located in the CUDACachingAllocator.cpp file.
How does CVE-2025-3136 affect PyTorch?
CVE-2025-3136 can lead to memory corruption, potentially allowing attackers to manipulate memory allocation.
How do I fix CVE-2025-3136?
To mitigate CVE-2025-3136, update PyTorch to a version that has addressed this vulnerability.
Is there a known exploit for CVE-2025-3136?
While details about a specific exploit are not mentioned, the manipulation of memory via this vulnerability poses a security risk.