CVE-2025-59953 | InternLM LMDeploy up to 0.10.1 RPC Server zmq_rpc.py call_and_response deserialization

SecurityVulns

A vulnerability marked as critical has been reported in InternLM LMDeploy up to 0.10.1. Affected by this issue is the function call_and_response of the file zmq_rpc.py of the component RPC Server. Performing a manipulation results in deserialization.

This vulnerability is identified as CVE-2025-59953. The attack can be initiated remotely. There is not any exploit available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More