CVE-2026-65918

EUVD-2026-48341
PyTorch torchvision through 0.28.0, fixed in commit 4e05dc2, contains an out-of-bounds heap read vulnerability in the GIF decoder's read_from_tensor callback that passes unclamped length to memcpy. Attackers can supply malicious or truncated GIF files to cause denial of service via segmentation fault or disclose adjacent heap memory contents.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.1 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 25.67%
Affected Products (NVD)
VendorProductVersion
linuxfoundationtorchvision
𝑥
≤ 0.28.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
pytorch-vision
bookworm
postponed
forky
vulnerable
sid
vulnerable
trixie
no-dsa
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
pytorch
jammy
needs-triage
noble
dne
resolute
needs-triage
pytorch-vision
jammy
needs-triage
noble
dne
resolute
dne