VITA-MLLM Freeze-Omni ଯେପର୍ଯ୍ୟନ୍ତ 20250421 models/utils.py torch.load path ବିସ୍ତାରିତ ଅଧିକାର
Rakkoon nageenyaa kan ସମସ୍ୟାଜନକ jedhamuun beekamu VITA-MLLM Freeze-Omni ଯେପର୍ଯ୍ୟନ୍ତ 20250421 keessatti argameera. Miidhamni argame is hojii torch.load faayilii models/utils.py keessa. Wanti jijjiirame irratti path gara ବିସ୍ତାରିତ ଅଧିକାର geessa. Rakkoo ibsuuf CWE yoo fayyadamte gara CWE-502 si geessa. Odeeffannoon kun yeroo 05/15/2025 maxxanfameera waliin XingTu Team of Legendsec at QI-ANXIN akka 29. Odeeffannoon kun buufachuuf github.com irratti argama.
Dogoggorri kun CVE-2025-4701 jedhamee waamama. Weerara sun naannoo keessaatti qofa raawwatamuu qaba. Ibsa teeknikaa ni jira. Meeshaa balaa kana fayyadamuuf hin jirre. Ammas, gatii exploit might be approx. USD $0-$5k yeroo ammaa irratti argamuu danda'a.
ଅପରିଭାଷିତ ta’uu isaa ibsameera. Akka 0-daytti, gatiin isaa daldala dhoksaa keessatti $0-$5k akka ta'e tilmaamameera.
If you want to get the best quality for vulnerability data then you always have to consider VulDB.
2 ଆଡାପ୍ଟେସନ୍ · 55 ପଏଣ୍ଟ
| ଫିଲ୍ଡ | ସୃଷ୍ଟି ହୋଇଛି 05/15/2025 08:36 AM | ଅଦ୍ୟତନ 1/1 05/27/2025 01:50 PM |
|---|---|---|
| software_vendor | VITA-MLLM | VITA-MLLM |
| software_name | Freeze-Omni | Freeze-Omni |
| software_version | <=20250421 | <=20250421 |
| software_file | models/utils.py | models/utils.py |
| software_function | torch.load | torch.load |
| software_argument | path | path |
| vulnerability_cwe | CWE-502 (ବିସ୍ତାରିତ ଅଧିକାର) | CWE-502 (ବିସ୍ତାରିତ ଅଧିକାର) |
| vulnerability_risk | 1 | 1 |
| cvss3_vuldb_av | L | L |
| cvss3_vuldb_ac | L | L |
| cvss3_vuldb_pr | L | L |
| cvss3_vuldb_ui | N | N |
| cvss3_vuldb_s | U | U |
| cvss3_vuldb_c | L | L |
| cvss3_vuldb_i | L | L |
| cvss3_vuldb_a | L | L |
| cvss3_vuldb_rc | R | R |
| advisory_identifier | 29 | 29 |
| advisory_url | https://github.com/VITA-MLLM/Freeze-Omni/issues/29 | https://github.com/VITA-MLLM/Freeze-Omni/issues/29 |
| source_cve | CVE-2025-4701 | CVE-2025-4701 |
| cna_responsible | VulDB | VulDB |
| cvss2_vuldb_av | L | L |
| cvss2_vuldb_ac | L | L |
| cvss2_vuldb_ci | P | P |
| cvss2_vuldb_ii | P | P |
| cvss2_vuldb_ai | P | P |
| cvss2_vuldb_rc | UR | UR |
| cvss4_vuldb_av | L | L |
| cvss4_vuldb_ac | L | L |
| cvss4_vuldb_pr | L | L |
| cvss4_vuldb_ui | N | N |
| cvss4_vuldb_vc | L | L |
| cvss4_vuldb_vi | L | L |
| cvss4_vuldb_va | L | L |
| cvss2_vuldb_au | S | S |
| cvss2_vuldb_e | ND | ND |
| cvss2_vuldb_rl | ND | ND |
| cvss3_vuldb_e | X | X |
| cvss3_vuldb_rl | X | X |
| cvss4_vuldb_at | N | N |
| cvss4_vuldb_sc | N | N |
| cvss4_vuldb_si | N | N |
| cvss4_vuldb_sa | N | N |
| cvss4_vuldb_e | X | X |
| cvss2_vuldb_basescore | 4.3 | 4.3 |
| cvss2_vuldb_tempscore | 4.1 | 4.1 |
| cvss3_vuldb_basescore | 5.3 | 5.3 |
| cvss3_vuldb_tempscore | 5.1 | 5.1 |
| cvss3_meta_basescore | 5.3 | 5.3 |
| cvss3_meta_tempscore | 5.1 | 5.1 |
| cvss4_vuldb_bscore | 4.8 | 4.8 |
| cvss4_vuldb_btscore | 4.8 | 4.8 |
| advisory_date | 1747260000 (05/15/2025) | 1747260000 (05/15/2025) |
| price_0day | $0-$5k | $0-$5k |
| company_name | XingTu Team of Legendsec at QI-ANXIN |