CVE-2026-65918

HIGH

PyTorch torchvision GIF Decoder Out-of-bounds Heap Read

Title source: cna
STIX 2.1

Description

PyTorch torchvision through 0.28.0, fixed in commit 4e05dc2, contains an out-of-bounds heap read vulnerability in the GIF decoder's read_from_tensor callback that passes unclamped length to memcpy. Attackers can supply malicious or truncated GIF files to cause denial of service via segmentation fault or disclose adjacent heap memory contents.

References (4)

Core 4
Core References
Exploit technical-description exploit issue-tracking
Researcher Disclosure
https://github.com/pytorch/vision/issues/9551
Issue Tracking issue-tracking patch
Pull Request
https://github.com/pytorch/vision/pull/9520

Scores

CVSS v3 7.1
EPSS 0.0031
EPSS Percentile 23.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-125
Status published
Products (2)
pytorch/vision < 0.28.0
pytorch/vision 4e05dc22f5f050a9528cc0ea09ceca6cdaf8f4ed
Published Jul 23, 2026
Tracked Since Jul 23, 2026