Логотип exploitDog
bind:CVE-2022-41889
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-41889

Количество 4

Количество 4

nvd логотип

CVE-2022-41889

больше 2 лет назад

TensorFlow is an open source platform for machine learning. If a list of quantized tensors is assigned to an attribute, the pywrap code fails to parse the tensor and returns a `nullptr`, which is not caught. An example can be seen in `tf.compat.v1.extract_volume_patches` by passing in quantized tensors as input `ksizes`. We have patched the issue in GitHub commit e9e95553e5411834d215e6770c81a83a3d0866ce. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2022-41889

больше 2 лет назад

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2022-41889

больше 2 лет назад

TensorFlow is an open source platform for machine learning. If a list ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xxcj-rhqg-m46g

больше 2 лет назад

Segfault via invalid attributes in `pywrap_tfe_src.cc`

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-41889

TensorFlow is an open source platform for machine learning. If a list of quantized tensors is assigned to an attribute, the pywrap code fails to parse the tensor and returns a `nullptr`, which is not caught. An example can be seen in `tf.compat.v1.extract_volume_patches` by passing in quantized tensors as input `ksizes`. We have patched the issue in GitHub commit e9e95553e5411834d215e6770c81a83a3d0866ce. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
msrc логотип
CVSS3: 7.5
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2022-41889

TensorFlow is an open source platform for machine learning. If a list ...

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xxcj-rhqg-m46g

Segfault via invalid attributes in `pywrap_tfe_src.cc`

CVSS3: 5.5
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу