PyTorch torchvision through 0.28.0, fixed in commit 4e05dc2, contains an out-of-bounds heap read vulnerability in the GIF decoder's read_from_tensor callback that passes unclamped length to memcpy. Attackers can supply malicious or truncated GIF files to cause denial of service via segmentation fault or disclose adjacent heap memory contents.
Metrics
Affected Vendors & Products
References
History
Fri, 21 Aug 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Linuxfoundation
Linuxfoundation torchvision |
|
| CPEs | cpe:2.3:a:linuxfoundation:torchvision:*:*:*:*:*:python:*:* | |
| Vendors & Products |
Linuxfoundation
Linuxfoundation torchvision |
Mon, 27 Jul 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Pytorch
Pytorch vision |
|
| Vendors & Products |
Pytorch
Pytorch vision |
Thu, 23 Jul 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PyTorch torchvision through 0.28.0, fixed in commit 4e05dc2, contains an out-of-bounds heap read vulnerability in the GIF decoder's read_from_tensor callback that passes unclamped length to memcpy. Attackers can supply malicious or truncated GIF files to cause denial of service via segmentation fault or disclose adjacent heap memory contents. | |
| Title | PyTorch torchvision GIF Decoder Out-of-bounds Heap Read | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-07-23T17:36:42.799Z
Updated: 2026-07-24T21:35:27.812Z
Reserved: 2026-07-23T12:51:09.596Z
Link: CVE-2026-65918
Updated: 2026-07-23T18:11:56.623Z
Status : Analyzed
Published: 2026-07-23T18:17:02.143
Modified: 2026-08-21T17:17:17.667
Link: CVE-2026-65918
No data.