{"dataType":"CVE_RECORD","dataVersion":"5.1","cveMetadata":{"cveId":"CVE-2025-3144","assignerOrgId":"1af790b2-7ee1-4545-860a-a788eba489b5","state":"PUBLISHED","assignerShortName":"VulDB","dateReserved":"2025-04-02T20:48:10.499Z","datePublished":"2025-04-03T06:00:19.126Z","dateUpdated":"2025-04-03T13:46:06.667Z"},"containers":{"cna":{"providerMetadata":{"orgId":"1af790b2-7ee1-4545-860a-a788eba489b5","shortName":"VulDB","dateUpdated":"2025-04-03T06:00:19.126Z"},"title":"MindSpore mindspore.numpy.fft.hfftn memory corruption","problemTypes":[{"descriptions":[{"type":"CWE","cweId":"CWE-119","lang":"en","description":"Memory Corruption"}]}],"affected":[{"vendor":"n/a","product":"MindSpore","versions":[{"version":"2.5.0","status":"affected"}]}],"descriptions":[{"lang":"en","value":"A vulnerability classified as problematic was found in MindSpore 2.5.0. Affected by this vulnerability is the function mindspore.numpy.fft.hfftn. The manipulation leads to memory corruption. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used."},{"lang":"de","value":"In MindSpore 2.5.0 wurde eine problematische Schwachstelle entdeckt. Hierbei betrifft es die Funktion mindspore.numpy.fft.hfftn. Durch Beeinflussen mit unbekannten Daten kann eine memory corruption-Schwachstelle ausgenutzt werden. Der Angriff muss lokal angegangen werden. Der Exploit steht zur öffentlichen Verfügung."}],"metrics":[{"cvssV4_0":{"version":"4.0","baseScore":4.8,"vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N","baseSeverity":"MEDIUM"}},{"cvssV3_1":{"version":"3.1","baseScore":3.3,"vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L","baseSeverity":"LOW"}},{"cvssV3_0":{"version":"3.0","baseScore":3.3,"vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L","baseSeverity":"LOW"}},{"cvssV2_0":{"version":"2.0","baseScore":1.7,"vectorString":"AV:L/AC:L/Au:S/C:N/I:N/A:P"}}],"timeline":[{"time":"2025-04-02T00:00:00.000Z","lang":"en","value":"Advisory disclosed"},{"time":"2025-04-02T02:00:00.000Z","lang":"en","value":"VulDB entry created"},{"time":"2025-04-02T22:53:40.000Z","lang":"en","value":"VulDB entry last update"}],"credits":[{"lang":"en","value":"Default436352 (VulDB User)","type":"reporter"}],"references":[{"url":"https://vuldb.com/?id.303049","name":"VDB-303049 | MindSpore mindspore.numpy.fft.hfftn memory corruption","tags":["vdb-entry","technical-description"]},{"url":"https://vuldb.com/?ctiid.303049","name":"VDB-303049 | CTI Indicators (IOB, IOC, IOA)","tags":["signature","permissions-required"]},{"url":"https://vuldb.com/?submit.525333","name":"Submit #525333 | MindSpore mindspore (in mindspore.numpy.fft.hfftn) 2.5.0 Memory Corruption","tags":["third-party-advisory"]},{"url":"https://gitee.com/mindspore/mindspore/issues/IBVKM8","tags":["exploit","issue-tracking"]}]},"adp":[{"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2025-04-03T13:43:46.593380Z","id":"CVE-2025-3144","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2025-04-03T13:46:06.667Z"}}]}}