Metrics
Affected Vendors & Products
Thu, 15 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 15 May 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability, which was classified as problematic, has been found in VITA-MLLM Freeze-Omni up to 20250421. This issue affects the function torch.load of the file models/utils.py. The manipulation of the argument path leads to deserialization. It is possible to launch the attack on the local host. | |
| Title | VITA-MLLM Freeze-Omni utils.py torch.load deserialization | |
| Weaknesses | CWE-20 CWE-502 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-15T14:31:04.331Z
Updated: 2025-05-15T15:08:21.207Z
Reserved: 2025-05-15T06:31:33.769Z
Link: CVE-2025-4701
Updated: 2025-05-15T15:08:13.640Z
Status : Awaiting Analysis
Published: 2025-05-15T15:16:11.340
Modified: 2025-05-16T14:43:26.160
Link: CVE-2025-4701
No data.