Логотип exploitDog
bind:CVE-2021-41217
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-41217

Количество 3

Количество 3

nvd логотип

CVE-2021-41217

больше 4 лет назад

TensorFlow is an open source platform for machine learning. In affected versions the process of building the control flow graph for a TensorFlow model is vulnerable to a null pointer exception when nodes that should be paired are not. This occurs because the code assumes that the first node in the pairing (e.g., an `Enter` node) always exists when encountering the second node (e.g., an `Exit` node). When this is not the case, `parent` is `nullptr` so dereferencing it causes a crash. The fix will be included in TensorFlow 2.7.0. We will also cherrypick this commit on TensorFlow 2.6.1, TensorFlow 2.5.2, and TensorFlow 2.4.4, as these are also affected and still in supported range.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2021-41217

больше 4 лет назад

TensorFlow is an open source platform for machine learning. In affecte ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-5crj-c72x-m7gq

около 4 лет назад

Null pointer exception when `Exit` node is not preceded by `Enter` op

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-41217

TensorFlow is an open source platform for machine learning. In affected versions the process of building the control flow graph for a TensorFlow model is vulnerable to a null pointer exception when nodes that should be paired are not. This occurs because the code assumes that the first node in the pairing (e.g., an `Enter` node) always exists when encountering the second node (e.g., an `Exit` node). When this is not the case, `parent` is `nullptr` so dereferencing it causes a crash. The fix will be included in TensorFlow 2.7.0. We will also cherrypick this commit on TensorFlow 2.6.1, TensorFlow 2.5.2, and TensorFlow 2.4.4, as these are also affected and still in supported range.

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-41217

TensorFlow is an open source platform for machine learning. In affecte ...

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-5crj-c72x-m7gq

Null pointer exception when `Exit` node is not preceded by `Enter` op

CVSS3: 5.5
0%
Низкий
около 4 лет назад

Уязвимостей на страницу