Логотип exploitDog
bind:CVE-2022-29207
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-29207

Количество 3

Количество 3

nvd логотип

CVE-2022-29207

больше 3 лет назад

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, multiple TensorFlow operations misbehave in eager mode when the resource handle provided to them is invalid. In graph mode, it would have been impossible to perform these API calls, but migration to TF 2.x eager mode opened up this vulnerability. If the resource handle is empty, then a reference is bound to a null pointer inside TensorFlow codebase (various codepaths). This is undefined behavior. Versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4 contain a patch for this issue.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2022-29207

больше 3 лет назад

TensorFlow is an open source platform for machine learning. Prior to v ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-5wpj-c6f7-24x8

больше 3 лет назад

Undefined behavior when users supply invalid resource handles

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-29207

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, multiple TensorFlow operations misbehave in eager mode when the resource handle provided to them is invalid. In graph mode, it would have been impossible to perform these API calls, but migration to TF 2.x eager mode opened up this vulnerability. If the resource handle is empty, then a reference is bound to a null pointer inside TensorFlow codebase (various codepaths). This is undefined behavior. Versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4 contain a patch for this issue.

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
debian логотип
CVE-2022-29207

TensorFlow is an open source platform for machine learning. Prior to v ...

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-5wpj-c6f7-24x8

Undefined behavior when users supply invalid resource handles

CVSS3: 5.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу