Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2022-41911

Опубликовано: 01 дек. 2022
Источник: msrc
CVSS3: 7.5
EPSS Низкий

Описание

Описание отсутствует

EPSS

Процентиль: 32%
0.00389
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 4.8
nvd
больше 3 лет назад

TensorFlow is an open source platform for machine learning. When printing a tensor, we get it's data as a `const char*` array (since that's the underlying storage) and then we typecast it to the element type. However, conversions from `char` to `bool` are undefined if the `char` is not `0` or `1`, so sanitizers/fuzzers will crash. The issue has been patched in GitHub commit `1be74370327`. The fix will be included in TensorFlow 2.11.0. We will also cherrypick this commit on TensorFlow 2.10.1, TensorFlow 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

CVSS3: 4.8
debian
больше 3 лет назад

TensorFlow is an open source platform for machine learning. When print ...

CVSS3: 4.8
github
больше 3 лет назад

Invalid char to bool conversion when printing a tensor

EPSS

Процентиль: 32%
0.00389
Низкий

7.5 High

CVSS3