Critical Vulnerability Information Vulnerability IDs CVE-2022-46184 CVE-2022-46185 CVE-2022-46186 CVE-2022-46187 CVE-2022-46188 CVE-2022-46189 CVE-2022-46190 Affected Products and Versions PyTorch - Affected Versions: v2.0.0 - Fixed Version: v2.7.0 Vulnerability Types Incorrect Computation Buffer Overflow Remote Code Execution Silent Incorrectness Vulnerability Description 1. CVE-2022-46184: produces incorrect output, potentially leading to dangerous decisions. 2. CVE-2022-46185: Buffer overflow occurs when compiling PyTorch models using . 3. CVE-2022-46186: The component allows remote attackers to execute arbitrary code. 4. CVE-2022-46187: produces incorrect output. 5. CVE-2022-46188: and allow remote attackers to execute arbitrary code. 6. CVE-2022-46189: produces incorrect output. 7. CVE-2022-46190: produces incorrect output. Attack Vector Vulnerabilities are triggered when a user requests compilation of a PyTorch model. Reference Links GitHub Issues GitHub Pull Requests Mitigation Upgrade to version v2.7.0 to fix these vulnerabilities.