Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-44512

Опубликовано: 08 июл. 2026
Источник: nvd
CVSS3: 5.5
EPSS Низкий

Описание

Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From 1.9.0 before 1.22.0, onnx.version_converter.convert_version() can dereference a null pointer in Upsample_6_7::adapt_upsample_6_7() in onnx/version_converter/adapters/upsample_6_7.h when processing an untrusted model with an Upsample node that has zero inputs, causing an unrecoverable denial of service. This issue is fixed in version 1.22.0.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:linuxfoundation:onnx:*:*:*:*:*:*:*:*
Версия от 1.9.0 (включая) до 1.22.0 (исключая)

EPSS

Процентиль: 8%
0.00183
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 1 месяца назад

Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From 1.9.0 before 1.22.0, onnx.version_converter.convert_version() can dereference a null pointer in Upsample_6_7::adapt_upsample_6_7() in onnx/version_converter/adapters/upsample_6_7.h when processing an untrusted model with an Upsample node that has zero inputs, causing an unrecoverable denial of service. This issue is fixed in version 1.22.0.

CVSS3: 6.5
redhat
около 1 месяца назад

Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From 1.9.0 before 1.22.0, onnx.version_converter.convert_version() can dereference a null pointer in Upsample_6_7::adapt_upsample_6_7() in onnx/version_converter/adapters/upsample_6_7.h when processing an untrusted model with an Upsample node that has zero inputs, causing an unrecoverable denial of service. This issue is fixed in version 1.22.0.

CVSS3: 5.5
debian
около 1 месяца назад

Open Neural Network Exchange (ONNX) is an open standard for machine le ...

CVSS3: 5.5
github
около 1 месяца назад

ONNX has Null Pointer Dereference in Upsample Version Converter Adapter (Zero Inputs)

EPSS

Процентиль: 8%
0.00183
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-476