An integer overflow vulnerability in the loading of ExecuTorch models can cause overlapping allocations, potentially resulting in code execution or other undesirable effects. This issue affects ExecuTorch prior to commit d158236b1dc84539c1b16843bc74054c9dcba006.
Metrics
Affected Vendors & Products
References
History
Tue, 12 Aug 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-190 | |
| Metrics |
cvssV3_1
|
Tue, 12 Aug 2025 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Meta
Meta executorch |
|
| Vendors & Products |
Meta
Meta executorch |
Thu, 07 Aug 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An integer overflow vulnerability in the loading of ExecuTorch models can cause overlapping allocations, potentially resulting in code execution or other undesirable effects. This issue affects ExecuTorch prior to commit d158236b1dc84539c1b16843bc74054c9dcba006. | |
| References |
|
Status: PUBLISHED
Assigner: facebook
Published: 2025-08-07T22:46:57.161Z
Updated: 2025-08-12T14:11:13.423Z
Reserved: 2025-03-21T19:52:56.086Z
Link: CVE-2025-30404
Updated: 2025-08-12T14:11:04.786Z
Status : Awaiting Analysis
Published: 2025-08-07T23:15:26.233
Modified: 2025-08-12T15:15:29.227
Link: CVE-2025-30404
No data.
ReportizFlow