CVE-2023-23930

CVSS V2 None CVSS V3 None
Description
vantage6 is privacy preserving federated learning infrastructure. Versions prior to 4.0.0 use pickle, which has known security issue, as a default serialization module but that has known security issues. All users of vantage6 that post tasks with the default serialization are affected. Version 4.0.0 contains a patch. Users may specify JSON serialization as a workaround.
Overview
  • CVE ID
  • CVE-2023-23930
  • Assigner
  • GitHub_M
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-10-11T17:39:23.504Z
  • Last Modified Date
  • 2023-10-11T18:50:53.413Z
History
Created Old Value New Value Data Type Notes
2024-06-25 08:48:15 Added to TrackCVE