Database/AI/ML frameworks & serving
PyTorch (flatbuffer loader): Out-of-bounds read parsing flatbuffer model
CVSS 5.5CVE-2024-31584AI/ML frameworks & servingcurated
Impact
Out-of-bounds read parsing flatbuffer model
Who can reach it
Customer-supplied model file
What to do
Ship torch >= 2.2.0
References
Related entries
- vLLM: crafted request to the Gemma4 unified parser crashes the inference serverCVE-2026-103241 · vLLM (Gemma4UnifiedParser, rust/src/parser/src/unified/gemma4.rs)Medium
- Keras (HDF5 ExternalLink, incomplete fix): Arbitrary HDF5 file readCVE-2026-12480 · Keras (HDF5 ExternalLink, incomplete fix)Medium
- Keras: unvalidated dataset sizes in .keras loading let a poisoned model exhaust node memoryCVE-2026-12570 · Keras (.keras model loading, H5IOStore.__getitem__)Medium
- Feast operator: tenant-supplied feature repo code runs with elevated privileges, reaching cluster adminCVE-2026-18942 · Feast operator in Red Hat OpenShift AI (feature repository processing)Medium
- BentoML (bentoml build, symlink dereferencing in the build context): bentoml build follows symlinks inside the buildCVE-2026-40610 · BentoML (bentoml build, symlink dereferencing in the build context)Medium
- NVIDIA NemoClaw: sensitive information visible in process invocation leads to information disclosureCVE-2026-65088 · NVIDIA NemoClaw (process invocation exposing sensitive information)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.