GHSA-9m39-3mf3-xwchCriticalCVSS 9.8

ExecuTorch heap buffer overflow vulnerability

Published
August 8, 2025
Last Modified
August 21, 2026

🔗 CVE IDs covered (1)

📋 Description

A heap buffer overflow vulnerability in the loading of ExecuTorch models can potentially result in code execution or other undesirable effects. This issue affects ExecuTorch prior to commit ede82493dae6d2d43f8c424e7be4721abe5242be

🎯 Affected products3

  • pip/executorch:< 0.7.0
  • maven/org.pytorch:executorch-android:< 0.7.0
  • swift/github.com/pytorch/executorch:< 0.7.0

🔗 References (4)