Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-9732 | A vulnerability was found in InternLM LMDeploy up to 0.7.1. It has been classified as critical. Affected is the function load_weight_ckpt of the file lmdeploy/lmdeploy/vl/model/utils.py of the component PT File Handler. The manipulation leads to deserialization. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. |
Github GHSA |
GHSA-7vc5-mjwp-c8fq | LMDeploy Improper Input Validation Vulnerability |
Wed, 23 Apr 2025 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Internlm
Internlm lmdeploy |
|
| CPEs | cpe:2.3:a:internlm:lmdeploy:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Internlm
Internlm lmdeploy |
Fri, 04 Apr 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 03 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in InternLM LMDeploy up to 0.7.1. It has been classified as critical. Affected is the function load_weight_ckpt of the file lmdeploy/lmdeploy/vl/model/utils.py of the component PT File Handler. The manipulation leads to deserialization. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. | |
| Title | InternLM LMDeploy PT File utils.py load_weight_ckpt deserialization | |
| Weaknesses | CWE-20 CWE-502 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-04-21T11:27:49.125Z
Reserved: 2025-04-03T07:06:34.195Z
Link: CVE-2025-3162
Updated: 2025-04-04T14:26:33.367Z
Status : Analyzed
Published: 2025-04-03T15:15:53.277
Modified: 2025-04-23T22:29:10.790
Link: CVE-2025-3162
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA