Skip to content

Pickle detection gaps #263

@mmaitre314

Description

@mmaitre314

As heads up, a number of detection issues were reported by @madgetron on picklescan which may be of interest to modelscan:

Issue Fix Advisory
Zip Flag Bit Exploit Crashes Picklescan But Not PyTorch mmaitre314/picklescan@e58e45e GHSA-w8jq-xcqf-f792
Zip Exploit Crashes Picklescan But Not PyTorch mmaitre314/picklescan@e58e45e GHSA-7q5r-7gvp-wc82
Picklescan fails to detect unsafe globals in PyTorch models with non-standard Pickle file extensions mmaitre314/picklescan@baf03fa GHSA-769v-p64c-89pr
Picklescan fails to detect some unsafe globals mmaitre314/picklescan@93764d6 GHSA-655q-fx9r-782v

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions