ZDI-CAN-25191: ZDI-24-1514: (0Day) Hugging Face Transformers MaskFormer Model Deserialization of Untrusted Data Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face Transformers. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of model files. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data. An attacker can leverage this vulnerability to execute code in the context of the current user.
Other sources
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Hugging Face Transformers. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2024-11393.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-25191?
The severity of ZDI-CAN-25191 is categorized as critical due to its potential for arbitrary code execution.
How do I fix ZDI-CAN-25191?
To fix ZDI-CAN-25191, users should update their installation of Hugging Face Transformers to the latest patched version.
Who is affected by ZDI-CAN-25191?
ZDI-CAN-25191 affects all installations of Hugging Face Transformers that are vulnerable to this exploit.
What type of attack vector is used in ZDI-CAN-25191?
ZDI-CAN-25191 requires user interaction, with attackers exploiting the vulnerability through a malicious page or file.
What are the consequences of ZDI-CAN-25191?
Exploiting ZDI-CAN-25191 can lead to remote code execution, allowing attackers to control the affected system.