{"id":"GHSA-3x5x-fw77-g54c","aliases":[],"url":"https://o3.security/vulnerability/GHSA-3x5x-fw77-g54c","summary":"dmlc/dgl Vulnerable to Remote Code Execution by Pickle Deserialization via rpc.recv_request()","details":"### Impact\nDgl implements rpc server (start_server() in rpc_server.py) for supporting the RPC communications among different remote users over networks. It relies on pickle serialize and deserialize to pack and unpack network messages. The is a known risk in pickle deserialization functionality that can be used for remote code execution.\n\n### Patches\nTBD.\n\n### Workarounds\nWhen running DGL distributed training and inference (DistDGL) make sure you do not assign public IPs to any instance in the cluster.\n\n### References\nIssue #7874\n\n### Reported by\nPinji Chen ([cpj24@mails.tsinghua.edu.cn](mailto:cpj24@mails.tsinghua.edu.cn)) from NISL lab (https://netsec.ccert.edu.cn/about) at Tsinghua University","published":"2025-03-05T19:50:09Z","modified":"2025-03-05T20:09:21.358666Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"PyPI","name":"dgl","fixedVersion":null}],"fix":null,"references":[{"type":"WEB","url":"https://github.com/dmlc/dgl/security/advisories/GHSA-3x5x-fw77-g54c"},{"type":"WEB","url":"https://github.com/dmlc/dgl/issues/7874"},{"type":"PACKAGE","url":"https://github.com/dmlc/dgl"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2025-03-05T20:09:21.358666Z"}}