Логотип exploitDog
bind:CVE-2022-21736
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-21736

Количество 3

Количество 3

nvd логотип

CVE-2022-21736

около 4 лет назад

Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseTensorSliceDataset` has an undefined behavior: under certain condition it can be made to dereference a `nullptr` value. The 3 input arguments to `SparseTensorSliceDataset` represent a sparse tensor. However, there are some preconditions that these arguments must satisfy but these are not validated in the implementation. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.

CVSS3: 7.6
EPSS: Низкий
debian логотип

CVE-2022-21736

около 4 лет назад

Tensorflow is an Open Source Machine Learning Framework. The implement ...

CVSS3: 7.6
EPSS: Низкий
github логотип

GHSA-pfjj-m3jj-9jc9

почти 4 года назад

Undefined behavior in `SparseTensorSliceDataset`

CVSS3: 7.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-21736

Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseTensorSliceDataset` has an undefined behavior: under certain condition it can be made to dereference a `nullptr` value. The 3 input arguments to `SparseTensorSliceDataset` represent a sparse tensor. However, there are some preconditions that these arguments must satisfy but these are not validated in the implementation. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.

CVSS3: 7.6
0%
Низкий
около 4 лет назад
debian логотип
CVE-2022-21736

Tensorflow is an Open Source Machine Learning Framework. The implement ...

CVSS3: 7.6
0%
Низкий
около 4 лет назад
github логотип
GHSA-pfjj-m3jj-9jc9

Undefined behavior in `SparseTensorSliceDataset`

CVSS3: 7.6
0%
Низкий
почти 4 года назад

Уязвимостей на страницу