| ID |
CVE-2026-11329
|
| Sažetak |
A vulnerability has been found in onnx onnx-mlir up to 0.5.0.0. Affected by this issue is the function generate_hash_key of the file src/Runtime/python/torch_onnxmlir/src/torch_onnxmlir/backend.py of the component Placeholder Node Cache Handler. Such manipulation leads to use of weak hash. An attack has to be approached locally. A high complexity level is associated with this attack. The exploitation is known to be difficult. The name of the patch is 72c5187ff6d13c2c2b3d3789b8f5faf99f08a5b4. Applying a patch is advised to resolve this issue. |
| Reference |
|
| CVSS |
| Base: | 2.4 |
| Impact: | 4.9 |
| Exploitability: | 1.5 |
|
| Pristup |
| Vektor | Složenost | Autentikacija |
| LOCAL |
HIGH |
SINGLE |
|
| Impact |
| Povjerljivost | Cjelovitost | Dostupnost |
| NONE |
PARTIAL |
PARTIAL |
|
| CVSS vektor |
AV:L/AC:H/Au:S/C:N/I:P/A:P |
| Zadnje važnije ažuriranje |
05-06-2026 - 13:26 |
| Objavljeno |
05-06-2026 - 13:16 |