Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-368v-7v32-52fx

Опубликовано: 21 нояб. 2022
Источник: github
Github: Прошло ревью
CVSS3: 4.8

Описание

Overflow in ResizeNearestNeighborGrad

Impact

When tf.raw_ops.ResizeNearestNeighborGrad is given a large size input, it overflows.

import tensorflow as tf align_corners = True half_pixel_centers = False grads = tf.constant(1, shape=[1,8,16,3], dtype=tf.float16) size = tf.constant([1879048192,1879048192], shape=[2], dtype=tf.int32) tf.raw_ops.ResizeNearestNeighborGrad(grads=grads, size=size, align_corners=align_corners, half_pixel_centers=half_pixel_centers)

Patches

We have patched the issue in GitHub commit 00c821af032ba9e5f5fa3fe14690c8d28a657624.

The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

For more information

Please consult our security guide for more information regarding the security model and how to contact us with issues and questions.

Attribution

This vulnerability has been reported by Neophytos Christou from the Secure Systems Lab (SSL) at Brown University.

Пакеты

Наименование

tensorflow

pip
Затронутые версииВерсия исправления

< 2.8.4

2.8.4

Наименование

tensorflow

pip
Затронутые версииВерсия исправления

>= 2.9.0, < 2.9.3

2.9.3

Наименование

tensorflow

pip
Затронутые версииВерсия исправления

>= 2.10.0, < 2.10.1

2.10.1

Наименование

tensorflow-cpu

pip
Затронутые версииВерсия исправления

< 2.8.4

2.8.4

Наименование

tensorflow-gpu

pip
Затронутые версииВерсия исправления

< 2.8.4

2.8.4

Наименование

tensorflow-cpu

pip
Затронутые версииВерсия исправления

>= 2.9.0, < 2.9.3

2.9.3

Наименование

tensorflow-gpu

pip
Затронутые версииВерсия исправления

>= 2.9.0, < 2.9.3

2.9.3

Наименование

tensorflow-cpu

pip
Затронутые версииВерсия исправления

>= 2.10.0, < 2.10.1

2.10.1

Наименование

tensorflow-gpu

pip
Затронутые версииВерсия исправления

>= 2.10.0, < 2.10.1

2.10.1

EPSS

Процентиль: 33%
0.00126
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-131

Связанные уязвимости

CVSS3: 4.8
nvd
около 3 лет назад

TensorFlow is an open source platform for machine learning. When `tf.raw_ops.ResizeNearestNeighborGrad` is given a large `size` input, it overflows. We have patched the issue in GitHub commit 00c821af032ba9e5f5fa3fe14690c8d28a657624. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

CVSS3: 7.5
msrc
около 3 лет назад

Overflow in `ResizeNearestNeighborGrad` in Tensorflow

CVSS3: 4.8
debian
около 3 лет назад

TensorFlow is an open source platform for machine learning. When `tf.r ...

EPSS

Процентиль: 33%
0.00126
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-131