{"id":"CVE-2025-54949","details":"A heap buffer overflow vulnerability in the loading of ExecuTorch models can potentially result in code execution or other undesirable effects. This issue affects ExecuTorch prior to commit ede82493dae6d2d43f8c424e7be4721abe5242be","aliases":["GHSA-9m39-3mf3-xwch","PYSEC-2026-333"],"modified":"2026-08-12T15:15:48.181392Z","published":"2025-08-07T22:58:23.290Z","database_specific":{"cna_assigner":"facebook","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/54xxx/CVE-2025-54949.json","unresolved_ranges":[{"extracted_events":[{"fixed":"https://github.com/pytorch/executorch/commit/ede82493dae6d2d43f8c424e7be4721abe5242be"}],"source":"AFFECTED_FIELD"}]},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/54xxx/CVE-2025-54949.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-54949"},{"type":"ADVISORY","url":"https://www.facebook.com/security/advisories/cve-2025-54949"},{"type":"FIX","url":"https://github.com/pytorch/executorch/commit/ede82493dae6d2d43f8c424e7be4721abe5242be"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/pytorch/executorch","events":[{"introduced":"0"},{"fixed":"ede82493dae6d2d43f8c424e7be4721abe5242be"}],"database_specific":{"source":"REFERENCES"}}],"versions":["ciflow/binaries/sdym","ciflow/binaries/all/sdym","v0.2.0-rc1","v0.1.0-rc1","stable-2023-09-19","stable-2023-09-12","stable-2023-08-29","stable-2023-08-15","stable-2023-08-01"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-54949.json","vanir_signatures_modified":"2026-08-12T15:15:48Z","vanir_signatures":[{"source":"https://github.com/pytorch/executorch/commit/ede82493dae6d2d43f8c424e7be4721abe5242be","target":{"file":"kernels/prim_ops/et_copy_index.cpp"},"deprecated":false,"digest":{"line_hashes":["121957020323574689823480903042459142624","125409210904276051776607744241352589641","248581585591437385727220559296329969777","267202912623442923288967475940123529305","304512569008727939823753154613325456522","6873608077481612929761107008845638520","79334496597976305191092111138872914180","292295362670652589352400647204328365926","195741744102147691126489124387700975679","205575496570499494708481404256398884770","35118489198705453247619660972459536691","112145048938924144115260822311632888689","128826397511722976224809354850155921767"],"threshold":0.9},"id":"CVE-2025-54949-61d493e1","signature_type":"Line","signature_version":"v1"},{"signature_type":"Function","signature_version":"v1","source":"https://github.com/pytorch/executorch/commit/ede82493dae6d2d43f8c424e7be4721abe5242be","target":{"file":"kernels/prim_ops/test/prim_ops_test.cpp","function":"TEST_F"},"deprecated":false,"digest":{"function_hash":"11239499256523041173111659413912133085","length":1377},"id":"CVE-2025-54949-b0eefa0e"},{"deprecated":false,"digest":{"length":1244,"function_hash":"326758178295538584534296223607143889913"},"id":"CVE-2025-54949-b509a731","signature_type":"Function","signature_version":"v1","source":"https://github.com/pytorch/executorch/commit/ede82493dae6d2d43f8c424e7be4721abe5242be","target":{"file":"kernels/prim_ops/et_copy_index.cpp","function":"et_copy_index"}},{"signature_type":"Line","signature_version":"v1","source":"https://github.com/pytorch/executorch/commit/ede82493dae6d2d43f8c424e7be4721abe5242be","target":{"file":"kernels/prim_ops/test/prim_ops_test.cpp"},"deprecated":false,"digest":{"line_hashes":["331899867184051566556417119445650164055","340066840568919290711097351350325941393","60625375708031533590759083702613162004","279921325556351828765117719379543979449"],"threshold":0.9},"id":"CVE-2025-54949-f4e8e0bd"}]}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}