¡¾·ì϶¹«¸æ¡¿vLLM Ô¶³Ì´úÂëÖ´Ðзì϶(CVE-2025-66448)
°ä²¼¹¦·ò 2025-12-02Ò»¡¢·ì϶¸ÅÊö
·ìϼûû³Æ | vLLM Ô¶³Ì´úÂëÖ´Ðзì϶ | ||
CVE ID | CVE-2025-66448 | ||
·ì϶ÀàÐÍ | RCE | ·¢ÏÖ¹¦·ò | 2025-12-2 |
·ì϶ÆÀ·Ö | 7.1 | ·ì϶µÈ¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | µÍ |
ÀûÓÃÄÑ¶È | ¸ß | Óû§½»»¥ | ±ØÒª |
PoC/EXP | δ¹«¿ª | ÔÚÒ°ÀûÓà | δ·¢ÏÖ |
vLLMÊÇÒ»¸ö¸ß»úÄܵĴóÄ£ÐÍÍÆÀí¿ò¼Ü£¬×¨Îª´ó¹æÄ£Ëµ»°Ä£Ð͵ĸßÍÌÍÂÁ¿¡¢µÍÑÓ³¤²¿Êð¶øÉè¼Æ¡£ÆäÖ÷Ìâ¸öÐÔÔ̺¬PagedAttention¸ßЧÄÚ´æÖÎÀí¡¢²¢Ðл¯µ÷¶Å×Å»¯ÒÔ¼°¶Ô¶àGPU¡¢É¢²¼Ê½»·¾³µÄÓÅÁ¼Ö§³Ö¡£vLLM¼æÈÝHugging Face½Ó¿Ú£¬±ãÓÚÄ£Ðͼ±¾ç¼ÓÔØÓ뼯³É£¬¿í·ºÓÃÓÚÍÆÀí·þÎñ¡¢AIÀûÓúó¶ËÓë³ö²ú¼¶Ä£ÐͲ¿Ê𳡾°¡£
2025Äê12ÔÂ2ÈÕ£¬GA»Æ½ð¼×¼¯ÍÅVSRC¼à²âµ½vLLM¿ò¼ÜÖÐTransformerÅäÖüÓÔØÁ÷³Ì´æÔÚÑϳÁÔ¶³Ì´úÂëÖ´Ðзì϶¡£·ì϶ԴÓÚNemotron_Nano_VL_ConfigÔÚ´¦ÖÃauto_map×Ö¶Îʱ£¬Í¨¹ýget_class_from_dynamic_module()ÎÞǰÌá»ñÈ¡²¢Ê·ý»¯Ô¶³Ì²Ö¿âÖеÄÀ࣬ʵÏÖ¶¯Ì¬Ä£¿é½âÎö¡£È»¶ø¸Ã¹ý³ÌδÕýÈ·×ñÑtrust_remote_code=FalseµÄ°²È«ÏÞ¶È£¬µ¼Ö¹¥»÷Õ߿ɻú¹ØÒ»¸ö¿´ËÆÕý³£µÄǰ¶ËÄ£ÐͲֿ⣬²¢ÔÚÆäconfig.jsonÖн«auto_mapÖ¸ÏòÔ̺¬¶ñÒâ´úÂëµÄºó¶Ë²Ö¿â¡£Ò»µ©Êܺ¦Õß¼ÓÔØÇ°¶ËÄ£ÐÍ£¬vLLM½«×Ô¶¯ÏÂÔØ²¢Ö´Ðкó¶Ë²Ö¿âµÄËÁÒâPython´úÂë¡£¸Ã·ì϶ӰÏìͨÓüÓÔØõè¾¶£¬¶ÔÄ£ÐÍ·þÎñ¡¢×Ô¶¯»¯Á÷Ë®ÏßÓ뿪·¢»·¾³¾ù×é³É¸ß·çÏÕ£¬¿Éµ¼ÖÂÆëÈ«µÄÖ÷»ú´úÂëÖ´ÐС£
¶þ¡¢Ó°ÏìÁìÓò
vLLM < <0.11.1
Èý¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£ºhttps://github.com/vllm-project/vllm/releases/tag/v0.11.2/
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£


¾©¹«Íø°²±¸11010802024551ºÅ