Executive Summary



This vulnerability is currently undergoing analysis and not all information is available. Please check back soon to view the completed vulnerability summary
Informations
Name CVE-2025-0508 First vendor Publication 2025-03-20
Vendor Cve Last vendor Modification 2025-03-20

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

A vulnerability in the SageMaker Workflow component of aws/sagemaker-python-sdk allows for the possibility of MD5 hash collisions in all versions. This can lead to workflows being inadvertently replaced due to the reuse of results from different configurations that produce the same MD5 hash. This issue can cause integrity problems within the pipeline, potentially leading to erroneous processing outcomes.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-0508

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-440 Expected Behavior Violation

Sources (Detail)

https://github.com/aws/sagemaker-python-sdk/commit/dcdd99f911e8b1a05d19cf1ad9...
https://huntr.com/bounties/eb056818-5b81-466f-81ee-916058d34af2
Source Url

Alert History

If you want to see full details history, please login or register.
0
Date Informations
2025-03-20 13:20:35
  • First insertion