{"id":"BIT-pytorch-2024-48063","details":"In PyTorch \u003c=2.4.1, the RemoteModule has Deserialization RCE. NOTE: this is disputed by multiple parties because this is intended behavior in PyTorch distributed computing.","aliases":["CVE-2024-48063","PYSEC-2024-259"],"modified":"2026-09-08T08:48:24.986470647Z","published":"2025-07-16T08:07:39.762Z","database_specific":{"cpes":["cpe:2.3:a:linuxfoundation:pytorch:*:*:*:*:*:python:*:*"],"severity":"Critical"},"references":[{"type":"ADVISORY","url":"https://gist.github.com/hexian2001/c046c066895a963ecc0a2cf9e1180065"},{"type":"WEB","url":"https://github.com/pytorch/pytorch/issues/129228"},{"type":"WEB","url":"https://github.com/pytorch/pytorch/security/policy#using-distributed-features"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-48063"},{"type":"EVIDENCE","url":"https://rumbling-slice-eb0.notion.site/Distributed-RPC-Framework-RemoteModule-has-Deserialization-RCE-in-pytorch-pytorch-111e3cda9e8c8021a7d3cbc61ee1a20c"}],"affected":[{"package":{"name":"pytorch","ecosystem":"Bitnami","purl":"pkg:bitnami/pytorch"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"2.5.0"}]}],"database_specific":{"source":"https://github.com/bitnami/vulndb/tree/main/data/pytorch/BIT-pytorch-2024-48063.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}],"schema_version":"1.9.0"}