Описание
When performing the inference shape operation of Affine, Concat, MatMul, ArgMinMax, EmbeddingLookup, and Gather operators, if the input shape size is 0, it will access data outside of bounds of shape which allocated from heap buffers.
Ссылки
- PatchThird Party Advisory
- PatchThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 1.1.0 (включая) до 1.3.0 (исключая)
cpe:2.3:a:mindspore:mindspore:*:*:*:*:*:openeuler:*:*
EPSS
Процентиль: 54%
0.00316
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-125
CWE-125
Связанные уязвимости
CVSS3: 7.5
github
больше 3 лет назад
When performing the inference shape operation of Affine, Concat, MatMul, ArgMinMax, EmbeddingLookup, and Gather operators, if the input shape size is 0, it will access data outside of bounds of shape which allocated from heap buffers.
EPSS
Процентиль: 54%
0.00316
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-125
CWE-125