HIGHCVSS 7.6
GHSA-qvp4-q2p5-22gg
Duplicate Advisory: Picklescan missing detection when calling pytorch function torch.utils._config_module.load_config
Summary
### Duplicate Advisory This advisory has been withdrawn because it is a duplicate of GHSA-vv6j-3g6g-2pvj. This link is maintained to preserve external references. ### Original Description picklescan before 0.0.28 fails to detect malicious pickle files that invoke torch.utils._config_module.load_config function within reduce methods. Attackers can craft pickle files embedding arbitrary code that evades detection but executes during pickle.load, enabling remote code execution in supply chain attacks.
Affected packages
| Ecosystem | Package | Affected versions | Fixed versions |
|---|---|---|---|
| PyPI | picklescan | — | 0.0.28 |
Remediation: Upgrade to 0.0.28 or later.
References
Includes data from the GitHub Advisory Database, licensed under CC-BY 4.0.