pkg:PyPI/tensorflow-gpu

共 718 筆 CVECRITICAL15HIGH184MEDIUM321LOW198

✅ 檢查你的版本

所有已知漏洞

  • CRITICAL9.8CVE-2023-25668TensorFlow vulnerable to heap out-of-buffer read in the QuantizeAndDequantize operation
    from 0, < 2.11.1
  • CRITICAL9.8CVE-2018-7575Integer Overflow or Wraparound in Google TensorFlow
    >= 1.0.0, < 1.7.1
  • CRITICAL9.8CVE-2018-7575Integer Overflow or Wraparound in Google TensorFlow
    from 0, < 1.7.1
  • CRITICAL9.3CVE-2021-41208Incomplete validation in boosted trees code
    >= 2.6.0, < 2.6.1
  • CRITICAL9.3CVE-2021-41208Incomplete validation in boosted trees code
    from 0, < 5c8c9a8bfe750f9743d0c859bae112060b216f5c | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • CRITICAL9.3CVE-2021-37678Arbitrary code execution due to YAML deserialization
    from 0, < 2.3.4
  • CRITICAL9.3CVE-2021-37678Arbitrary code execution due to YAML deserialization
    from 0, < 23d6383eb6c14084a8fc3bdf164043b974818012 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • CRITICAL9.1CVE-2020-26269TensorFlow vulnerable to heap out of bounds read in filesystem glob matching
    from 0, < 8b5b9dc96666a3a5d27fad7179ff215e3b74b67c | >= 2.4.0rc0, < 2.4.0
  • CRITICAL9.1CVE-2020-26269TensorFlow vulnerable to heap out of bounds read in filesystem glob matching
    >= 2.4.0rc0, < 2.4.0
  • CRITICAL9.0CVE-2020-15206Denial of Service in Tensorflow
    from 0, < 1.15.4
  • CRITICAL9.0CVE-2020-15206Denial of Service in Tensorflow
    from 0, < adf095206f25471e864a8e63a0f1caef53a0e3a6 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • CRITICAL9.0CVE-2020-15205Data leak in Tensorflow
    from 0, < 1.15.4
  • CRITICAL9.0CVE-2020-15205Data leak in Tensorflow
    from 0, < 0462de5b544ed4731aa2fb23946ac22c01856b80 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • CRITICAL9.0CVE-2020-15202Integer truncation in Shard API usage
    from 0, < 1.15.4
  • CRITICAL9.0CVE-2020-15202Integer truncation in Shard API usage
    from 0, < 27b417360cbd671ef55915e4bb6bb06af8b8a832, < ca8c013b5e97b1373b3bb1c97ea655e69f31a575 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • HIGH8.8CVE-2022-23566Out of bounds write in Tensorflow
    from 0, < 2.5.3
  • HIGH8.8CVE-2022-23566Out of bounds write in Tensorflow
    from 0, < 97282c6d0d34476b6ba033f961590b783fa184cd | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH8.8CVE-2022-23561Out of bounds write in TFLite
    from 0, < 2.5.3
  • HIGH8.8CVE-2022-23561Out of bounds write in TFLite
    from 0, < 6c0b2b70eeee588591680f5b7d5d38175fd7cdf6 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH8.8CVE-2022-23560Read and Write outside of bounds in TFLite
    from 0, < 2.5.3
  • HIGH8.8CVE-2022-23560Read and Write outside of bounds in TFLite
    from 0, < 6364463d6f5b6254cac3d6aedf999b6a96225038 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH8.8CVE-2022-23559Integer overflow in TFLite
    from 0, < 2.5.3
  • HIGH8.8CVE-2022-23559Integer overflow in TFLite
    from 0, < a4e401da71458d253b05e41f28637b65baf64be4, < 1de49725a5fc4e48f1a3b902ec3599ee99283043, < f19be71717c497723ba0cea0379e84f061a75e01 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH8.8CVE-2022-23594Out of bounds read in Tensorflow
    >= 2.7.0, < 2.7.1
  • HIGH8.8CVE-2022-23587Integer overflow in Tensorflow
    from 0, < 2.5.3
  • HIGH8.8CVE-2022-23587Integer overflow in Tensorflow
    from 0, < 0aaaae6eca5a7175a193696383f582f53adab23f | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH8.8CVE-2022-23574Out of bounds read and write in Tensorflow
    from 0, < 2.5.3
  • HIGH8.8CVE-2022-23574Out of bounds read and write in Tensorflow
    from 0, < 0657c83d08845cc434175934c642299de2c0f042 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH8.8CVE-2018-8825Improper Restriction of Operations within the Bounds of a Memory Buffer in Google TensorFlow
    from 0, < 1.7.1
  • HIGH8.8CVE-2018-8825Improper Restriction of Operations within the Bounds of a Memory Buffer in Google TensorFlow
    >= 1.5.0, < 1.7.1
  • HIGH8.7CVE-2020-15207Segfault and data corruption in tensorflow-lite
    from 0, < 2d88f470dea2671b430884260f3626b1fe99830a | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • HIGH8.7CVE-2020-15207Segfault and data corruption in tensorflow-lite
    from 0, < 1.15.4
  • HIGH8.5CVE-2020-15195Heap buffer overflow in Tensorflow
    from 0, < 1.15.4
  • HIGH8.5CVE-2020-15195Heap buffer overflow in Tensorflow
    from 0, < 390611e0d45c5793c7066110af37c8514e6a6c54 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • HIGH8.5CVE-2020-15196Heap buffer overflow in Tensorflow
    >= 2.3.0, < 2.3.1
  • HIGH8.5CVE-2020-15196Heap buffer overflow in Tensorflow
    from 0, < 3cbb917b4714766030b28eba9fb41bb97ce9ee02 | from 0, < 2.3.1
  • HIGH8.4CVE-2021-37639Null pointer dereference and heap OOB read in operations restoring tensors
    from 0, < 2.3.4
  • HIGH8.4CVE-2021-37639Null pointer dereference and heap OOB read in operations restoring tensors
    from 0, < 9e82dce6e6bd1f36a57e08fa85af213e2b2f2622 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH8.1CVE-2022-23592Out of bounds read in Tensorflow
    from 0, < c99d98cd189839dcf51aee94e7437b54b31f8abd | >= 2.7.0, < 2.8.0
  • HIGH8.1CVE-2022-23592Out of bounds read in Tensorflow
    >= 2.8.0-rc0, < 2.8.0
  • HIGH8.1CVE-2022-21730Out of bounds read in Tensorflow
    from 0, < 2.5.3
  • HIGH8.1CVE-2022-21730Out of bounds read in Tensorflow
    from 0, < 002408c3696b173863228223d535f9de72a101a9 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH8.1CVE-2022-21728Out of bounds read in Tensorflow
    from 0, < 37c01fb5e25c3d80213060460196406c43d31995 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH8.1CVE-2022-21728Out of bounds read in Tensorflow
    from 0, < 2.5.3
  • HIGH8.1CVE-2022-21726Out of bounds read in Tensorflow
    from 0, < 2.5.3
  • HIGH8.1CVE-2022-21726Out of bounds read in Tensorflow
    from 0, < 23968a8bf65b009120c43b5ebcceaf52dbc9e943 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH8.1CVE-2020-15212Out of bounds access in tensorflow-lite
    >= 2.2.0, < 2.2.1
  • HIGH8.1CVE-2020-15212Out of bounds access in tensorflow-lite
    from 0, < 204945b19e44b57906c9344c0d00120eeeae178a | >= 2.3.0, < 2.3.1, >= 2.2.0, < 2.2.1
  • HIGH8.1CVE-2020-15214Out of bounds write in tensorflow-lite
    >= 2.2.0, < 2.2.1
  • HIGH8.1CVE-2020-15214Out of bounds write in tensorflow-lite
    from 0, < 204945b19e44b57906c9344c0d00120eeeae178a | >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • HIGH8.1CVE-2018-7577Improper Input Validation in Google TensorFlow
    from 0, < 1.7.1
  • HIGH8.1CVE-2018-7577Improper Input Validation in Google TensorFlow
    >= 1.1.0, < 1.7.1
  • HIGH8.1CVE-2018-10055Improper Restriction of Operations within the Bounds of a Memory Buffer in Google TensorFlow
    >= 1.1.0, < 1.7.1
  • HIGH8.1CVE-2018-10055Improper Restriction of Operations within the Bounds of a Memory Buffer in Google TensorFlow
    from 0, < 1.7.1
  • HIGH8.0CVE-2023-25801TensorFlow has double free in Fractional(Max/Avg)Pool
    from 0, < 2.11.1
  • HIGH7.8CVE-2022-29216Code injection in `saved_model_cli` in TensorFlow
    from 0, < 2.6.4
  • HIGH7.8CVE-2021-41201Unitialized access in `EinsumHelper::ParseEquation`
    from 0, < f09caa532b6e1ac8d2aa61b7832c78c5b79300c6 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.8CVE-2021-41201Unitialized access in `EinsumHelper::ParseEquation`
    >= 2.6.0, < 2.6.1
  • HIGH7.8CVE-2021-41203Missing validation during checkpoint loading
    from 0, < 368af875869a204b4ac552b9ddda59f6a46a56ec, < abcced051cb1bd8fb05046ac3b6023a7ebcc4578, < e8dc63704c88007ee4713076605c90188d66f3d2, < b619c6f865715ca3b15ef1842b5b95edbaa710ad | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.8CVE-2021-41203Missing validation during checkpoint loading
    >= 2.6.0, < 2.6.1
  • HIGH7.8CVE-2021-41214Reference binding to `nullptr` in `tf.ragged.cross`
    >= 2.6.0, < 2.6.1
  • HIGH7.8CVE-2021-41214Reference binding to `nullptr` in `tf.ragged.cross`
    from 0, < fa6b7782fbb14aa08d767bc799c531f5e1fb3bb8 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.8CVE-2021-41219Undefined behavior via `nullptr` reference binding in sparse matrix multiplication
    from 0, < e6cf28c72ba2eb949ca950d834dd6d66bb01cfae | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.8CVE-2021-41219Undefined behavior via `nullptr` reference binding in sparse matrix multiplication
    >= 2.6.0, < 2.6.1
  • HIGH7.8CVE-2021-41220Use after free / memory leak in `CollectiveReduceV2`
    from 0, < ca38dab9d3ee66c5de06f11af9a4b1200da5ef75 | >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.8CVE-2021-41220Use after free / memory leak in `CollectiveReduceV2`
    >= 2.6.0, < 2.6.1
  • HIGH7.8CVE-2021-41221Access to invalid memory during shape inference in `Cudnn*` ops
    from 0, < af5fcebb37c8b5d71c237f4e59c6477015c78ce6 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.8CVE-2021-41221Access to invalid memory during shape inference in `Cudnn*` ops
    >= 2.6.0, < 2.6.1
  • HIGH7.8CVE-2021-37648Incorrect validation of `SaveV2` inputs
    from 0, < 9728c60e136912a12d99ca56e106b7cce7af5986 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.8CVE-2021-37648Incorrect validation of `SaveV2` inputs
    from 0, < 2.3.4
  • HIGH7.8CVE-2021-37650Segfault and heap buffer overflow in `{Experimental,}DatasetToTFRecord`
    from 0, < 2.3.4
  • HIGH7.8CVE-2021-37650Segfault and heap buffer overflow in `{Experimental,}DatasetToTFRecord`
    from 0, < e0b6e58c328059829c3eb968136f17aa72b6c876 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.8CVE-2021-37652Use after free in boosted trees creation
    from 0, < 5ecec9c6fbdbc6be03295685190a45e7eee726ab | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.8CVE-2021-37652Use after free in boosted trees creation
    from 0, < 2.3.4
  • HIGH7.8CVE-2021-37663Incomplete validation in `QuantizeV2`
    from 0, < 6da6620efad397c85493b8f8667b821403516708 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.8CVE-2021-37663Incomplete validation in `QuantizeV2`
    from 0, < 2.3.4
  • HIGH7.8CVE-2021-37665Incomplete validation in MKL requantization
    from 0, < 2.3.4
  • HIGH7.8CVE-2021-37665Incomplete validation in MKL requantization
    from 0, < 9e62869465573cb2d9b5053f1fa02a81fce21d69, < 203214568f5bc237603dbab6e1fd389f1572f5c9 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.8CVE-2021-37666Reference binding to nullptr in `RaggedTensorToVariant`
    from 0, < 2.3.4
  • HIGH7.8CVE-2021-37666Reference binding to nullptr in `RaggedTensorToVariant`
    from 0, < be7a4de6adfbd303ce08be4332554dff70362612 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.8CVE-2021-37667Reference binding to nullptr in unicode encoding
    from 0, < 2.3.4
  • HIGH7.8CVE-2021-37667Reference binding to nullptr in unicode encoding
    from 0, < 2e0ee46f1a47675152d3d865797a18358881d7a6 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.8CVE-2021-37671Reference binding to nullptr in map operations
    from 0, < 2.3.4
  • HIGH7.8CVE-2021-37671Reference binding to nullptr in map operations
    from 0, < 532f5c5a547126c634fefd43bbad1dc6417678ac | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.8CVE-2021-37676Reference binding to nullptr in shape inference
    from 0, < 578e634b4f1c1c684d4b4294f9e5281b2133b3ed | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.8CVE-2021-37676Reference binding to nullptr in shape inference
    from 0, < 2.3.4
  • HIGH7.8CVE-2021-37681NPE in TFLite
    from 0, < 2.3.4
  • HIGH7.8CVE-2021-37681NPE in TFLite
    from 0, < 5b048e87e4e55990dae6b547add4dae59f4e1c76 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.8CVE-2021-37688Null pointer dereference in TFLite
    from 0, < 15691e456c7dc9bd6be203b09765b063bf4a380c | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.8CVE-2021-37688Null pointer dereference in TFLite
    from 0, < 2.3.4
  • HIGH7.8CVE-2021-37689Null pointer dereference in TFLite MLIR optimizations
    from 0, < 2.3.4
  • HIGH7.8CVE-2021-37689Null pointer dereference in TFLite MLIR optimizations
    from 0, < d6b57f461b39fd1aa8c1b870f1b974aac3554955 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.7CVE-2021-37637Null pointer dereference in `CompressElement`
    from 0, < 5dc7f6981fdaf74c8c5be41f393df705841fb7c5 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.7CVE-2021-37637Null pointer dereference in `CompressElement`
    from 0, < 2.3.4
  • HIGH7.7CVE-2021-37638Null pointer dereference in `RaggedTensorToTensor`
    from 0, < 301ae88b331d37a2a16159b65b255f4f9eb39314 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.7CVE-2021-37638Null pointer dereference in `RaggedTensorToTensor`
    from 0, < 2.3.4
  • HIGH7.7CVE-2021-37643Null pointer dereference in `MatrixDiagPartOp`
    from 0, < 482da92095c4d48f8784b1f00dda4f81c28d2988 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.7CVE-2021-37643Null pointer dereference in `MatrixDiagPartOp`
    from 0, < 2.3.4
  • HIGH7.7CVE-2021-37647Null pointer dereference in `SparseTensorSliceDataset`
    from 0, < 2.3.4
  • HIGH7.7CVE-2021-37647Null pointer dereference in `SparseTensorSliceDataset`
    from 0, < 02cc160e29d20631de3859c6653184e3f876b9d7 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.7CVE-2021-37649Null pointer dereference in `UncompressElement`
    from 0, < 7bdf50bb4f5c54a4997c379092888546c97c3ebd | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.7CVE-2021-37649Null pointer dereference in `UncompressElement`
    from 0, < 2.3.4
  • HIGH7.6CVE-2022-23584Use after free in `DecodePng` in Tensorflow
    from 0, < e746adbfcfee15e9cfdb391ff746c765b99bdf9b | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH7.6CVE-2022-23584Use after free in `DecodePng` in Tensorflow
    from 0, < 2.5.3
  • HIGH7.6CVE-2022-23562Integer overflow in Tensorflow
    from 0, < 2.5.3
  • HIGH7.6CVE-2022-23562Integer overflow in Tensorflow
    from 0, < f0147751fd5d2ff23251149ebad9af9f03010732 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH7.6CVE-2022-23558Integer overflow in TFLite array creation
    from 0, < 2.5.3
  • HIGH7.6CVE-2022-23558Integer overflow in TFLite array creation
    from 0, < a1e1511dde36b3f8aa27a6ec630838e7ea40e091 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH7.6CVE-2022-21740Heap overflow in Tensorflow
    from 0, < 2.5.3
  • HIGH7.6CVE-2022-21740Heap overflow in Tensorflow
    from 0, < 2b7100d6cdff36aa21010a82269bc05a6d1cc74a, < adbbabdb0d3abb3cdeac69e38a96de1d678b24b3 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH7.6CVE-2022-21736Undefined behavior in Tensorflow
    from 0, < 965b97e4a9650495cda5a8c210ef6684b4b9eceb | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH7.6CVE-2022-21736Undefined behavior in Tensorflow
    from 0, < 2.5.3
  • HIGH7.6CVE-2022-23573Uninitialized variable access in Tensorflow
    from 0, < ef1d027be116f25e25bb94a60da491c2cf55bd0b | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH7.6CVE-2022-23573Uninitialized variable access in Tensorflow
    from 0, < 2.5.3
  • HIGH7.6CVE-2022-21727Integer overflow in Tensorflow
    from 0, < b64638ec5ccaa77b7c1eb90958e3d85ce381f91b | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH7.6CVE-2022-21727Integer overflow in Tensorflow
    from 0, < 2.5.3
  • HIGH7.5CVE-2023-33976TensorFlow segfault in array_ops.upper_bound
    from 0, < 2.12.1
  • HIGH7.5CVE-2023-25659TensorFlow vulnerable to Out-of-Bounds Read in DynamicStitch
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25660TensorFlow vulnerable to seg fault in `tf.raw_ops.Print`
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25662TensorFlow vulnerable to integer overflow in EditDistance
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25663TensorFlow has Null Pointer Error in TensorArrayConcatV2
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25665TensorFlow has Null Pointer Error in SparseSparseMaximum
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25666TensorFlow has Floating Point Exception in AudioSpectrogram
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25669TensorFlow has Floating Point Exception in AvgPoolGrad with XLA
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25670TensorFlow has Null Pointer Error in QuantizedMatMulWithBiasAndDequantize
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25672TensorFlow has Null Pointer Error in LookupTableImportV2
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25673TensorFlow has Floating Point Exception in TensorListSplit with XLA
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25674TensorFlow has Null Pointer Error in RandomShuffle with XLA enable
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25675TensorFlow has Segfault in Bincount with XLA
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25676TensorFlow has null dereference on ParallelConcat with XLA
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-27579TensorFlow has Floating Point Exception in TFLite in conv kernel
    from 0, < 2.11.1
  • HIGH7.5CVE-2023-25658TensorFlow vulnerable to Out-of-Bounds Read in GRUBlockCellGrad
    from 0, < 2.11.1
  • HIGH7.5CVE-2022-36016`CHECK`-fail in `tensorflow::full_type::SubstituteFromAttrs` in TensorFlow
    from 0, < 2.7.2
  • HIGH7.5CVE-2022-36015Integer overflow in math ops in TensorFlow
    from 0, < 2.7.2
  • HIGH7.5CVE-2022-23591Stack overflow in Tensorflow
    from 0, < 448a16182065bd08a202d9057dd8ca541e67996c | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH7.5CVE-2022-23591Stack overflow in Tensorflow
    from 0, < 2.5.3
  • HIGH7.5CVE-2021-41228Code injection in `saved_model_cli`
    from 0, < 8b202f08d52e8206af2bdb2112a62fafbc546ec7 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.5CVE-2021-41228Code injection in `saved_model_cli`
    >= 2.5.0, < 2.5.2
  • HIGH7.5CVE-2020-15203Denial of Service in Tensorflow
    from 0, < 33be22c65d86256e6826666662e40dbdfe70ee83 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • HIGH7.5CVE-2020-15203Denial of Service in Tensorflow
    from 0, < 1.15.4
  • HIGH7.4CVE-2020-15208Data corruption in tensorflow-lite
    from 0, < 1.15.4
  • HIGH7.4CVE-2020-15208Data corruption in tensorflow-lite
    from 0, < 8ee24e7949a203d234489f9da2c5bf45a7d5157d | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • HIGH7.3CVE-2021-37635Heap out of bounds access in sparse reduction operations
    from 0, < 2.3.4
  • HIGH7.3CVE-2021-37635Heap out of bounds access in sparse reduction operations
    from 0, < 87158f43f05f2720a374f3e6d22a7aaa3a33f750 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.3CVE-2021-37654Heap OOB and CHECK fail in `ResourceGather`
    from 0, < bc9c546ce7015c57c2f15c168b3d9201de679a1d | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.3CVE-2021-37654Heap OOB and CHECK fail in `ResourceGather`
    from 0, < 2.3.4
  • HIGH7.3CVE-2021-37655Heap OOB in `ResourceScatterUpdate`
    from 0, < 2.3.4
  • HIGH7.3CVE-2021-37655Heap OOB in `ResourceScatterUpdate`
    from 0, < 01cff3f986259d661103412a20745928c727326f | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.3CVE-2021-37659Reference binding to nullptr and heap OOB in binary cwise ops
    from 0, < 93f428fd1768df147171ed674fee1fc5ab8309ec | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.3CVE-2021-37659Reference binding to nullptr and heap OOB in binary cwise ops
    from 0, < 2.3.4
  • HIGH7.3CVE-2021-37664Heap OOB in boosted trees
    from 0, < e84c975313e8e8e38bb2ea118196369c45c51378 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.3CVE-2021-37664Heap OOB in boosted trees
    from 0, < 2.3.4
  • HIGH7.3CVE-2021-29591Stack overflow due to looping TFLite subgraph
    from 0, < 2.1.4
  • HIGH7.3CVE-2021-29591Stack overflow due to looping TFLite subgraph
    from 0, < 9c1dc920d8ffb4893d6c9d27d1f039607b326743, < c6173f5fe66cdbab74f4f869311fe6aae2ba35f4 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • HIGH7.1CVE-2022-41902Out of bounds write in grappler in Tensorflow
    from 0, < 2.8.4
  • HIGH7.1CVE-2022-41900FractionalMaxPool and FractionalAVGPool heap out-of-bounds acess in Tensorflow
    from 0, < 2.8.4
  • HIGH7.1CVE-2022-29208Segfault and Out-of-bounds Write write due to incomplete validation in TensorFlow
    from 0, < 2.6.4
  • HIGH7.1CVE-2022-23563Insecure temporary file in Tensorflow
    from 0, < 2.5.3
  • HIGH7.1CVE-2022-23563Insecure temporary file in Tensorflow
    from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • HIGH7.1CVE-2021-41205Heap OOB read in all `tf.raw_ops.QuantizeAndDequantizeV*` ops
    >= 2.6.0, < 2.6.1
  • HIGH7.1CVE-2021-41205Heap OOB read in all `tf.raw_ops.QuantizeAndDequantizeV*` ops
    from 0, < 7cf73a2274732c9d82af51c2bc2cf90d13cd7e6d | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.1CVE-2021-41210Heap OOB read in `tf.raw_ops.SparseCountSparseOutput`
    from 0, < 701cfaca222a82afbeeb17496bd718baa65a67d2 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.1CVE-2021-41210Heap OOB read in `tf.raw_ops.SparseCountSparseOutput`
    >= 2.6.0, < 2.6.1
  • HIGH7.1CVE-2021-41211Heap OOB in shape inference for `QuantizeV2`
    >= 2.6.0, < 2.6.1
  • HIGH7.1CVE-2021-41211Heap OOB in shape inference for `QuantizeV2`
    from 0, < a0d64445116c43cf46a5666bd4eee28e7a82f244 | >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.1CVE-2021-41212Heap OOB read in `tf.ragged.cross`
    from 0, < fa6b7782fbb14aa08d767bc799c531f5e1fb3bb8 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.1CVE-2021-41212Heap OOB read in `tf.ragged.cross`
    >= 2.6.0, < 2.6.1
  • HIGH7.1CVE-2021-41223Heap OOB in `FusedBatchNorm` kernels
    >= 2.6.0, < 2.6.1
  • HIGH7.1CVE-2021-41223Heap OOB in `FusedBatchNorm` kernels
    from 0, < aab9998916c2ffbd8f0592059fad352622f89cda | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.1CVE-2021-41224`SparseFillEmptyRows` heap OOB
    from 0, < 67bfd9feeecfb3c61d80f0e46d89c170fbee682b | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.1CVE-2021-41224`SparseFillEmptyRows` heap OOB
    >= 2.6.0, < 2.6.1
  • HIGH7.1CVE-2021-41226Heap OOB in `SparseBinCount`
    >= 2.6.0, < 2.6.1
  • HIGH7.1CVE-2021-41226Heap OOB in `SparseBinCount`
    from 0, < f410212e373eb2aec4c9e60bf3702eba99a38aba | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • HIGH7.1CVE-2021-37641Heap OOB in `RaggedGather`
    from 0, < a2b743f6017d7b97af1fe49087ae15f0ac634373 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.1CVE-2021-37641Heap OOB in `RaggedGather`
    from 0, < 2.3.4
  • HIGH7.1CVE-2021-37651Heap buffer overflow in `FractionalAvgPoolGrad`
    from 0, < 0f931751fb20f565c4e94aa6df58d54a003cdb30 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.1CVE-2021-37651Heap buffer overflow in `FractionalAvgPoolGrad`
    from 0, < 2.3.4
  • HIGH7.1CVE-2021-37656Reference binding to nullptr in `RaggedTensorToSparse`
    from 0, < 1071f554dbd09f7e101324d366eec5f4fe5a3ece | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.1CVE-2021-37656Reference binding to nullptr in `RaggedTensorToSparse`
    from 0, < 2.3.4
  • HIGH7.1CVE-2021-37657Reference binding to nullptr in `MatrixDiagV*` ops
    from 0, < f2a673bd34f0d64b8e40a551ac78989d16daad09 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.1CVE-2021-37657Reference binding to nullptr in `MatrixDiagV*` ops
    from 0, < 2.3.4
  • HIGH7.1CVE-2021-37658Reference binding to nullptr in `MatrixSetDiagV*` ops
    from 0, < ff8894044dfae5568ecbf2ed514c1a37dc394f1b | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.1CVE-2021-37658Reference binding to nullptr in `MatrixSetDiagV*` ops
    from 0, < 2.3.4
  • HIGH7.1CVE-2021-37662Reference binding to nullptr in boosted trees
    from 0, < 9c87c32c710d0b5b53dc6fd3bfde4046e1f7a5ad, < 429f009d2b2c09028647dd4bb7b3f6f414bbaad7 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.1CVE-2021-37662Reference binding to nullptr in boosted trees
    from 0, < 2.3.4
  • HIGH7.1CVE-2021-37679Heap OOB in nested `tf.map_fn` with `RaggedTensor`s
    from 0, < 4e2565483d0ffcadc719bd44893fb7f609bb5f12 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • HIGH7.1CVE-2021-37679Heap OOB in nested `tf.map_fn` with `RaggedTensor`s
    from 0, < 2.3.4
  • HIGH7.1CVE-2021-29614Interpreter crash from `tf.io.decode_raw`
    from 0, < 698e01511f62a3c185754db78ebce0eee1f0184d | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • HIGH7.1CVE-2021-29614Interpreter crash from `tf.io.decode_raw`
    from 0, < 2.1.4
  • HIGH7.1CVE-2021-29606Heap OOB read in TFLite
    from 0, < 2.1.4
  • HIGH7.1CVE-2021-29606Heap OOB read in TFLite
    from 0, < ae2daeb45abfe2c6dda539cf8d0d6f653d3ef412 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • HIGH7.1CVE-2021-29605Integer overflow in TFLite memory allocation
    from 0, < 2.1.4
  • HIGH7.1CVE-2021-29605Integer overflow in TFLite memory allocation
    from 0, < 7c8cc4ec69cd348e44ad6a2699057ca88faad3e5 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • HIGH7.1CVE-2020-15193Memory corruption in Tensorflow
    from 0, < 22e07fb204386768e5bcbea563641ea11f96ceb8 | from 0, < 2.2.1, >= 2.3.0rc0, < 2.3.1
  • HIGH7.1CVE-2020-15193Memory corruption in Tensorflow
    >= 2.2.0, < 2.2.1
  • HIGH7.0CVE-2022-35939Out of bounds write in `scatter_nd` op in TensorFlow Lite
    from 0, < 2.7.2
  • HIGH7.0CVE-2022-35937OOB read in `Gather_nd` op in TensorFlow Lite
    from 0, < 2.7.2
  • HIGH7.0CVE-2021-41206Incomplete validation of shapes in multiple TF ops
    from 0, < 68422b215e618df5ad375bcdc6d2052e9fd3080a, < 4d74d8a00b07441cba090a02e0dd9ed385145bf4, < 579261dcd446385831fe4f7457d802a59685121d, < e7f497570abb6b4ae5af4970620cd880e4c0c904, < da4aad5946be30e5f049920fa076e1f7ef021261, < 4dddb2fd0b01cdd196101afbba6518658a2c9e07 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1
  • HIGH7.0CVE-2021-41206Incomplete validation of shapes in multiple TF ops
    >= 2.6.0, < 2.6.1
  • MEDIUM6.8CVE-2022-41880ThreadUnsafeUnigramCandidateSampler Heap out of bounds in Tensorflow
    >= 2.10.0, < 2.10.1
  • MEDIUM6.8CVE-2022-41883Out of bounds segmentation fault due to unequal op inputs in Tensorflow
    >= 2.10.0, < 2.10.1
  • MEDIUM6.6CVE-2021-41227Arbitrary memory read in `ImmutableConst`
    >= 2.6.0, < 2.6.1
  • MEDIUM6.6CVE-2021-41227Arbitrary memory read in `ImmutableConst`
    from 0, < 3712a2d3455e6ccb924daa5724a3652a86f6b585, < 1cb6bb6c2a6019417c9adaf9e6843ba75ee2580b | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM6.6CVE-2021-37690Use after free and segfault in shape inference functions
    from 0, < 2.3.4
  • MEDIUM6.6CVE-2021-37690Use after free and segfault in shape inference functions
    from 0, < ee119d4a498979525046fba1c3dd3f13a039fbb1 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM6.5CVE-2023-25667TensorFlow vulnerable to segfault when opening multiframe gif
    from 0, < 2.11.1
  • MEDIUM6.5CVE-2022-23583`CHECK`-failures in binary ops in Tensorflow
    from 0, < a7c02f1a9bbc35473969618a09ee5f9f5d3e52d9 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23583`CHECK`-failures in binary ops in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23582`CHECK`-failures in `TensorByteSize` in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23582`CHECK`-failures in `TensorByteSize` in Tensorflow
    from 0, < c2426bba00a01de6913738df8fa78e0215fcce02 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23579`CHECK`-failures during Grappler's `SafeToRemoveIdentity` in Tensorflow
    from 0, < 92dba16749fae36c246bec3f9ba474d9ddeb7662 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23579`CHECK`-failures during Grappler's `SafeToRemoveIdentity` in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23575Integer overflow in Tensorflow
    from 0, < fcd18ce3101f245b083b30655c27b239dc72221e | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23575Integer overflow in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23576Integer overflow in Tensorflow
    from 0, < b9bd6cfd1c50e6807846af9a86f9b83cafc9c8ae | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23576Integer overflow in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23577Null-dereference in Tensorflow
    from 0, < 4f38b1ac8e42727e18a2f0bde06d3bee8e77b250 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23577Null-dereference in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-21735Division by zero in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-21735Division by zero in Tensorflow
    from 0, < ba4e8ac4dc2991e350d5cc407f8598c8d4ee70fb | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-21734`CHECK`-failures in Tensorflow
    from 0, < f57315566d7094f322b784947093406c2aea0d7d | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-21734`CHECK`-failures in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-21731Type confusion leading to segfault in Tensorflow
    from 0, < 08d7b00c0a5a20926363849f611729f53f3ec022 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-21731Type confusion leading to segfault in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-21729Overflow and uncaught divide by zero in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-21729Overflow and uncaught divide by zero in Tensorflow
    from 0, < 58b34c6c8250983948b5a781b426f6aa01fd47af | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-21725Division by zero in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-21725Division by zero in Tensorflow
    from 0, < 3218043d6d3a019756607643cf65574fbfef5d7a | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23564Reachable Assertion in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23564Reachable Assertion in Tensorflow
    from 0, < 14fea662350e7c26eb5fe1be2ac31704e5682ee6 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23565`CHECK`-failures in Tensorflow
    from 0, < c2b31ff2d3151acb230edc3f5b1832d2c713a9e0 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23565`CHECK`-failures in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23557Division by zero in TFLite
    from 0, < 8c6f391a2282684a25cbfec7687bd5d35261a209 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23557Division by zero in TFLite
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-21741Division by zero in TFLite
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-21741Division by zero in TFLite
    from 0, < e5b0eec199c2d03de54fd6a7fd9275692218e2bc | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-21739Null pointer dereference in TensorFlow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-21739Null pointer dereference in TensorFlow
    from 0, < 53b0dd6dc5957652f35964af16b892ec9af4a559 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-21738Integer overflow leading to crash in Tensorflow
    from 0, < 6f4d3e8139ec724dbbcb40505891c81dd1052c4a | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-21738Integer overflow leading to crash in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-21737Assertion failure based denial of service in Tensorflow
    from 0, < 7019ce4f68925fd01cdafde26f8d8c938f47e6f9 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-21737Assertion failure based denial of service in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23567Integer overflows in Tensorflow
    from 0, < e952a89b7026b98fe8cbe626514a93ed68b7c510, < 1b54cadd19391b60b6fcccd8d076426f7221d5e8 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23567Integer overflows in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23568Integer overflows in Tensorflow
    from 0, < b51b82fe65ebace4475e3c54eb089c18a4403f1c, < a68f68061e263a88321c104a6c911fe5598050a8 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23568Integer overflows in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23569`CHECK`-fails when building invalid tensor shapes in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23569`CHECK`-fails when building invalid tensor shapes in Tensorflow
    from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23570Null-dereference in Tensorflow
    from 0, < 8a513cec4bec15961fbfdedcaa5376522980455c | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23570Null-dereference in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23589Null pointer dereference in Grappler's `IsConstant` in Tensorflow
    from 0, < 0a365c029e437be0349c31f8d4c9926b69fa3fa1, < 045deec1cbdebb27d817008ad5df94d96a08b1bf | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23589Null pointer dereference in Grappler's `IsConstant` in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23571Reachable Assertion in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23571Reachable Assertion in Tensorflow
    from 0, < 5b491cd5e41ad63735161cec9c2a568172c8b6a3 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23572Crash when type cannot be specialized in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23572Crash when type cannot be specialized in Tensorflow
    from 0, < cb164786dc891ea11d3a900e90367c339305dc7b | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23588`CHECK`-fails due to attempting to build a reference tensor in Tensorflow
    from 0, < 6b5adc0877de832b2a7c189532dbbbc64622eeb6 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23588`CHECK`-fails due to attempting to build a reference tensor in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23586Multiple `CHECK`-fails in `function.cc` in Tensorflow
    from 0, < 3d89911481ba6ebe8c88c1c0b595412121e6c645, < dcc21c7bc972b10b6fb95c2fb0f4ab5a59680ec2 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23586Multiple `CHECK`-fails in `function.cc` in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23580Abort caused by allocating a vector that is too large in Tensorflow
    from 0, < 1361fb7e29449629e1df94d44e0427ebec8c83c7 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2022-23580Abort caused by allocating a vector that is too large in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23581`CHECK`-failures during Grappler's `IsSimplifiableReshape` in Tensorflow
    from 0, < 2.5.3
  • MEDIUM6.5CVE-2022-23581`CHECK`-failures during Grappler's `IsSimplifiableReshape` in Tensorflow
    from 0, < 1fb27733f943295d874417630edd3b38b34ce082, < 240655511cd3e701155f944a972db71b6c0b1bb6, < ebc1a2ffe5a7573d905e99bd0ee3568ee07c12c1 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM6.5CVE-2020-15210Segmentation fault in tensorflow-lite
    from 0, < d58c96946b2880991d63d1dacacb32f0a4dfa453 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • MEDIUM6.5CVE-2020-15210Segmentation fault in tensorflow-lite
    from 0, < 1.15.4
  • MEDIUM6.5CVE-2018-21233Out-of-bounds read in TensorFlow possibly causing disclosure of the contents of process memory.
    from 0, < 49f73c55d56edffebde4bca4a407ad69c1cae433 | from 0, < 1.7.0
  • MEDIUM6.5CVE-2018-21233Out-of-bounds read in TensorFlow possibly causing disclosure of the contents of process memory.
    from 0, < 1.7.0
  • MEDIUM6.5CVE-2019-9635NULL Pointer Dereference in Google TensorFlow
    >= 1.0.0, < 1.12.1
  • MEDIUM6.5CVE-2019-9635NULL Pointer Dereference in Google TensorFlow
    from 0, < 1.12.2
  • MEDIUM6.5CVE-2018-7576Null pointer dereference in TensorFlow leads to exploitation
    >= 1.0.0, < 1.6.0
  • MEDIUM6.5CVE-2018-7576Null pointer dereference in TensorFlow leads to exploitation
    from 0, < 1.7.0rc0
  • MEDIUM6.3CVE-2021-29613Incomplete validation in `tf.raw_ops.CTCLoss`
    from 0, < 2.1.4
  • MEDIUM6.3CVE-2021-29613Incomplete validation in `tf.raw_ops.CTCLoss`
    from 0, < 14607c0707040d775e06b6817325640cb4b5864c, < 4504a081af71514bb1828048363e6540f797005b | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • MEDIUM6.3CVE-2021-29601Integer overflow in TFLite concatentation
    from 0, < 2.1.4
  • MEDIUM6.3CVE-2021-29601Integer overflow in TFLite concatentation
    from 0, < 4253f96a58486ffe84b61c0415bb234a4632ee73 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • MEDIUM6.3CVE-2020-15197Denial of Service in Tensorflow
    from 0, < 3cbb917b4714766030b28eba9fb41bb97ce9ee02 | from 0, < 2.3.1
  • MEDIUM6.3CVE-2020-15197Denial of Service in Tensorflow
    >= 2.3.0, < 2.3.1
  • MEDIUM5.9CVE-2022-35983`CHECK` fail in `Save` and `SaveSlices` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35984`CHECK` fail in `ParameterizedTruncatedNormal` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35985`CHECK` fail in `LRNGrad` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35988`CHECK` fail in `tf.linalg.matrix_rank` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35989`CHECK` fail in `MaxPool` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35982Segfault in `SparseBincount` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35981`CHECK` fail in `FractionalMaxPoolGrad` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35979Segfault in `QuantizedRelu` and `QuantizedRelu6`
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35974Segfault in `QuantizeDownAndShrinkRange` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35973Segfault in `QuantizedMatMul` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35972Segfault in `QuantizedBiasAdd` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35971`CHECK` fail in `FakeQuantWithMinMaxVars` in TensorFlow
    >= 2.9.0, < 2.9.1
  • MEDIUM5.9CVE-2022-35970Segfault in `QuantizedInstanceNorm` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35969`CHECK` fail in `Conv2DBackpropInput` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35968`CHECK` fail in `AvgPoolGrad` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35967Segfault in `QuantizedAdd` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35966Segfault in `QuantizedAvgPool` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35990`CHECK` fail in `FakeQuantWithMinMaxVarsPerChannelGradient` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35991`CHECK` fail in `TensorListScatter` and `TensorListScatterV2` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35965Segfault in `LowerBound` and `UpperBound` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35992`CHECK` fail in `TensorListFromTensor` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35993`CHECK` fail in `SetSize` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35964Segfault in `BlockLSTMGradV2` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35963`CHECK` failures in `FractionalAvgPoolGrad` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35952`CHECK` failures in `UnbatchGradOp` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35940Int overflow in `RaggedRangeOp` in Tensoflow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35994`CHECK` fail in `CollectiveGather` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35960`CHECK` failure in `TensorListReserve` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35996Floating point exception in `Conv2D` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35959`CHECK` failures in `AvgPool3DGrad` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36000Null dereference on MLIR on empty function attributes in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36001`CHECK` fail in `DrawBoundingBoxes` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36002`CHECK` fail in `Unbatch` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36013Null-dereference in `mlir::tfg::GraphDefImporter::ConvertNodeDef` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36011Null dereference on MLIR on empty function attributes in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36017Segfault in `Requantize` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36003`CHECK` fail in `RandomPoissonV2` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36005`CHECK` fail in `FakeQuantWithMinMaxVarsGradient` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35995`CHECK` fail in `AudioSummaryV2` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36004`CHECK` fail in `tf.random.gamma` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36014Null-dereference in `mlir::tfg::TFOp::nameAttr` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36012Assertion fail on MLIR empty edge names in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35987`CHECK` fail in `DenseBincount` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35941`CHECK` failure in `AvgPoolOp` in Tensorflow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36026`CHECK` fail in `QuantizeAndDequantizeV3` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36018`CHECK` fail in `RaggedTensorToVariant` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36019`CHECK` fail in `FakeQuantWithMinMaxVarsPerChannel` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-36027Segfault TFLite converter on per-channel quantized transposed convolutions in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35934`CHECK` failure in tf.reshape in Tensorflow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35935`CHECK` failure in `SobolSample` via missing validation in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-35997`CHECK` fail in `tf.sparse.cross` in TensorFlow
    >= 2.9.0, < 2.9.1
  • MEDIUM5.9CVE-2022-35999`CHECK` fail in `Conv2DBackpropInput` in TensorFlow
    from 0, < 2.7.2
  • MEDIUM5.9CVE-2022-23593Segfault in `simplifyBroadcast` in Tensorflow
    from 0, < 35f0fabb4c178253a964d7aabdbb15c6a398b69a | >= 2.7.0, < 2.8.0
  • MEDIUM5.9CVE-2022-23593Segfault in `simplifyBroadcast` in Tensorflow
    >= 2.8.0-rc0, < 2.8.0
  • MEDIUM5.9CVE-2022-23590Crash due to erroneous `StatusOr` in Tensorflow
    from 0, < 2.7.1
  • MEDIUM5.9CVE-2022-23590Crash due to erroneous `StatusOr` in Tensorflow
    from 0, < 955059813cc325dc1db5e2daa6221271406d4439 | from 0, < 2.7.1
  • MEDIUM5.9CVE-2020-15265Segfault in `tf.quantization.quantize_and_dequantize`
    from 0, < 2.4.0
  • MEDIUM5.9CVE-2020-15265Segfault in `tf.quantization.quantize_and_dequantize`
    from 0, < eccb7ec454e6617738554a255d77f08e60ee0808 | from 0, < 2.4.0
  • MEDIUM5.9CVE-2020-15209Null pointer dereference in tensorflow-lite
    from 0, < 0b5662bc2be13a8c8f044d925d87fb6e56247cd8 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • MEDIUM5.9CVE-2020-15209Null pointer dereference in tensorflow-lite
    from 0, < 1.15.4
  • MEDIUM5.9CVE-2020-15200Segfault in Tensorflow
    from 0, < 3cbb917b4714766030b28eba9fb41bb97ce9ee02 | from 0, < 2.3.1
  • MEDIUM5.9CVE-2020-15200Segfault in Tensorflow
    >= 2.3.0, < 2.3.1
  • MEDIUM5.9CVE-2020-15199Denial of Service in Tensorflow
    from 0, < 3cbb917b4714766030b28eba9fb41bb97ce9ee02 | from 0, < 2.3.1
  • MEDIUM5.9CVE-2020-15199Denial of Service in Tensorflow
    >= 2.3.0, < 2.3.1
  • MEDIUM5.5CVE-2022-41889Segfault via invalid attributes in `pywrap_tfe_src.cc` in Tensorflow
    from 0, < 2.8.4
  • MEDIUM5.5CVE-2022-29213Incomplete validation in signal ops leads to crashes in TensorFlow
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29212Core dump when loading TFLite models with quantization in TensorFlow
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29211Segfault in TensorFlow if `tf.histogram_fixed_width` is called with NaN values
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29210Heap buffer overflow due to incorrect hash function in TensorFlow
    >= 2.8.0, < 2.8.1
  • MEDIUM5.5CVE-2022-29209Type confusion leading to `CHECK`-failure based denial of service in TensorFlow
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29207Undefined behavior when users supply invalid resource handles in TensorFlow
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29206Missing validation results in undefined behavior in `SparseTensorDenseAdd` in TensorFlow
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29205Segfault due to missing support for quantized types in TensorFlow
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29204Missing validation causes denial of service in TensorFlow via `Conv3DBackpropFilterV2`
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29203Integer overflow in `SpaceToBatchND` in TensorFlow
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29202Denial of service in TensorFlow due to lack of validation in `tf.ragged.constant`
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29201Missing validation in `QuantizedConv2D` results in undefined behavior in TensorFlow
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29200Missing validation causes denial of service in TensorFlow via `LSTMBlockCell`
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29199Missing validation causes denial of service in TensorFlow via `LoadAndRemapMatrix`
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29198Missing validation causes denial of service in TensorFlow via `SparseTensorToCSRSparseMatrix`
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29197Missing validation causes denial of service in TensorFlow via `UnsortedSegmentJoin`
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29196Missing validation causes denial of service in TensorFlow via `Conv3DBackpropFilterV2`
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29195Missing validation causes denial of service in TensorFlow via `StagePeek`
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29194Missing validation causes denial of service via `DeleteSessionTensor` in TensorFlow
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29192Missing validation crashes `QuantizeAndDequantizeV4Grad` in TensorFlow
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29191Missing validation causes denial of service via `GetSessionTensor` in TensorFlow
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2022-29193Missing validation causes `TensorSummaryV2` in TensorFlow to crash
    from 0, < 2.6.4
  • MEDIUM5.5CVE-2021-41195Crash in `tf.math.segment_*` operations
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41195Crash in `tf.math.segment_*` operations
    from 0, < e9c81c1e1a9cd8dd31f4e83676cab61b60658429 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41196Crash in `max_pool3d` when size argument is 0 or negative
    from 0, < 12b1ff82b3f26ff8de17e58703231d5a02ef1b8b | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41196Crash in `max_pool3d` when size argument is 0 or negative
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41197Crashes due to overflow and `CHECK`-fail in ops with large tensor shapes
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41197Crashes due to overflow and `CHECK`-fail in ops with large tensor shapes
    from 0, < a871989d7b6c18cdebf2fb4f0e5c5b62fbc19edf, < d81b1351da3e8c884ff836b64458d94e4a157c15, < 7c1692bd417eb4f9b33ead749a41166d6080af85 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41198Overflow/crash in `tf.tile` when tiling tensor is large
    from 0, < 9294094df6fea79271778eb7e7ae1bad8b5ef98f | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41198Overflow/crash in `tf.tile` when tiling tensor is large
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41199Overflow/crash in `tf.image.resize` when size is large
    from 0, < e5272d4204ff5b46136a1ef1204fc00597e21837 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41199Overflow/crash in `tf.image.resize` when size is large
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41200Incomplete validation in `tf.summary.create_file_writer`
    from 0, < 874bda09e6702cd50bac90b453b50bcc65b2769e | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41200Incomplete validation in `tf.summary.create_file_writer`
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41202Overflow/crash in `tf.range`
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41202Overflow/crash in `tf.range`
    from 0, < 1b0e0ec27e7895b9985076eab32445026ae5ca94, < 6d94002a09711d297dbba90390d5482b76113899 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41204Segfault while copying constant resource tensor
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41204Segfault while copying constant resource tensor
    from 0, < 7731e8dfbe4a56773be5dc94d631611211156659 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41207FPE in `ParallelConcat`
    from 0, < f2c3931113eaafe9ef558faaddd48e00a6606235 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41207FPE in `ParallelConcat`
    from 0, < 2.4.4
  • MEDIUM5.5CVE-2021-41209FPE in convolutions with zero size filters
    from 0, < f2c3931113eaafe9ef558faaddd48e00a6606235 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41209FPE in convolutions with zero size filters
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41213Deadlock in mutually recursive `tf.function` objects
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41213Deadlock in mutually recursive `tf.function` objects
    from 0, < afac8158d43691661ad083f6dd9e56f327c1dcb7 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41215Null pointer exception in `DeserializeSparse`
    from 0, < d3738dd70f1c9ceb547258cbb82d853da8771850 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41215Null pointer exception in `DeserializeSparse`
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41216Heap buffer overflow in `Transpose`
    from 0, < c79ba87153ee343401dbe9d1954d7f79e521eb14 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41216Heap buffer overflow in `Transpose`
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41217Null pointer exception when `Exit` node is not preceded by `Enter` op
    from 0, < 05cbebd3c6bb8f517a158b0155debb8df79017ff | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41217Null pointer exception when `Exit` node is not preceded by `Enter` op
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41218Integer division by 0 in `tf.raw_ops.AllToAll`
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41218Integer division by 0 in `tf.raw_ops.AllToAll`
    from 0, < a8ad3e5e79c75f36edb81e0ba3f3c0c5442aeddc | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41222Segfault due to negative splits in `SplitV`
    from 0, < 25d622ffc432acc736b14ca3904177579e733cc6 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-41222Segfault due to negative splits in `SplitV`
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41225A use of uninitialized value vulnerability in Tensorflow
    >= 2.6.0, < 2.6.1
  • MEDIUM5.5CVE-2021-41225A use of uninitialized value vulnerability in Tensorflow
    from 0, < 68867bf01239d9e1048f98cbad185bf4761bedd3 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
  • MEDIUM5.5CVE-2021-37636Floating point exception in `SparseDenseCwiseDiv`
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37636Floating point exception in `SparseDenseCwiseDiv`
    from 0, < d9204be9f49520cdaaeb2541d1dc5187b23f31d9 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37640Integer division by 0 in sparse reshaping
    from 0, < 4923de56ec94fff7770df259ab7f2288a74feb41 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37640Integer division by 0 in sparse reshaping
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37642Division by 0 in `ResourceScatterDiv`
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37642Division by 0 in `ResourceScatterDiv`
    from 0, < 4aacb30888638da75023e6601149415b39763d76 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37644`std::abort` raised from `TensorListReserve`
    from 0, < 8a6e874437670045e6c7dc6154c7412b4a2135e2 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37644`std::abort` raised from `TensorListReserve`
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37645Integer overflow due to conversion to unsigned
    from 0, < 2.4.3
  • MEDIUM5.5CVE-2021-37645Integer overflow due to conversion to unsigned
    from 0, < 96f364a1ca3009f98980021c4b32be5fdcca33a1 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37646Bad alloc in `StringNGrams` caused by integer conversion
    from 0, < c283e542a3f422420cfdb332414543b62fc4e4a5 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37646Bad alloc in `StringNGrams` caused by integer conversion
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37653Division by 0 in `ResourceGather`
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37653Division by 0 in `ResourceGather`
    from 0, < ac117ee8a8ea57b73d34665cdf00ef3303bc0b11 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37660Division by 0 in inplace operations
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37660Division by 0 in inplace operations
    from 0, < e86605c0a336c088b638da02135ea6f9f6753618 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37661Crash caused by integer conversion to unsigned
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37661Crash caused by integer conversion to unsigned
    from 0, < 8a84f7a2b5a2b27ecf88d25bad9ac777cd2f7992 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37668FPE in `tf.raw_ops.UnravelIndex`
    from 0, < a776040a5e7ebf76eeb7eb923bf1ae417dd4d233 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37668FPE in `tf.raw_ops.UnravelIndex`
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37669Crash in NMS ops caused by integer conversion to unsigned
    from 0, < 3a7362750d5c372420aa8f0caf7bf5b5c3d0f52d, < b5cdbf12ffcaaffecf98f22a6be5a64bb96e4f58 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37669Crash in NMS ops caused by integer conversion to unsigned
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37670Heap OOB in `UpperBound` and `LowerBound`
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37670Heap OOB in `UpperBound` and `LowerBound`
    from 0, < 42459e4273c2e47a3232cc16c4f4fff3b3a35c38 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37672Heap OOB in `SdcaOptimizerV2`
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37672Heap OOB in `SdcaOptimizerV2`
    from 0, < a4e138660270e7599793fa438cd7b2fc2ce215a6 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37673`CHECK`-fail in `MapStage`
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37673`CHECK`-fail in `MapStage`
    from 0, < d7de67733925de196ec8863a33445b73f9562d1d | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37674Incomplete validation in `MaxPoolGrad`
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37674Incomplete validation in `MaxPoolGrad`
    from 0, < 136b51f10903e044308cf77117c0ed9871350475 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37675Division by 0 in most convolution operators
    from 0, < 8a793b5d7f59e37ac7f3cd0954a750a2fe76bad4 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37675Division by 0 in most convolution operators
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37677Missing validation in shape inference for `Dequantize`
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37677Missing validation in shape inference for `Dequantize`
    from 0, < da857cfa0fde8f79ad0afdbc94e88b5d4bbec764 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37680Division by zero in TFLite
    from 0, < 718721986aa137691ee23f03638867151f74935f | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37680Division by zero in TFLite
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37683FPE in TFLite division operations
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37683FPE in TFLite division operations
    from 0, < 1e206baedf8bef0334cca3eb92bab134ef525a28 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37684FPE in TFLite pooling operations
    >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37684FPE in TFLite pooling operations
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37685Heap OOB in TFLite
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37685Heap OOB in TFLite
    from 0, < d94ffe08a65400f898241c0374e9edc6fa8ed257 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37687Heap OOB in TFLite's `Gather*` implementations
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37687Heap OOB in TFLite's `Gather*` implementations
    from 0, < eb921122119a6b6e470ee98b89e65d721663179d, < bb6a0383ed553c286f87ca88c207f6774d5c4a8f | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37686Infinite loop in TFLite
    >= 2.6.0rc0, < 2.6.0rc2
  • MEDIUM5.5CVE-2021-37686Infinite loop in TFLite
    from 0, < dfa22b348b70bb89d6d6ec0ff53973bacb4f4695 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37691FPE in LSH in TFLite
    from 0, < 0575b640091680cfb70f4dd93e70658de43b94f9 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37691FPE in LSH in TFLite
    from 0, < 2.3.4
  • MEDIUM5.5CVE-2021-37692Segfault on strings tensors with mistmatched dimensions, due to Go code
    from 0, < 8721ba96e5760c229217b594f6d2ba332beedf22 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.5CVE-2021-37692Segfault on strings tensors with mistmatched dimensions, due to Go code
    >= 2.5.0rc0, < 2.5.1
  • MEDIUM5.4CVE-2020-15198Heap buffer overflow in Tensorflow
    >= 2.3.0, < 2.3.1
  • MEDIUM5.4CVE-2020-15198Heap buffer overflow in Tensorflow
    from 0, < 3cbb917b4714766030b28eba9fb41bb97ce9ee02 | from 0, < 2.3.1
  • MEDIUM5.3CVE-2021-29607Incomplete validation in `SparseSparseMinimum`
    from 0, < 2.1.4
  • MEDIUM5.3CVE-2021-29607Incomplete validation in `SparseSparseMinimum`
    from 0, < ba6822bd7b7324ba201a28b2f278c29a98edbef2, < f6fde895ef9c77d848061c0517f19d0ec2682f3a | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • MEDIUM5.3CVE-2022-23595Null pointer dereference in TensorFlow
    from 0, < 2.5.3
  • MEDIUM5.3CVE-2022-23595Null pointer dereference in TensorFlow
    from 0, < e21af685e1828f7ca65038307df5cc06de4479e8 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM5.3CVE-2021-29609Incomplete validation in `SparseAdd`
    from 0, < 2.1.4
  • MEDIUM5.3CVE-2021-29609Incomplete validation in `SparseAdd`
    from 0, < 41727ff06111117bdf86b37db198217fd7a143cc, < 6fd02f44810754ae7481838b6a67c5df7f909ca3 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • MEDIUM5.3CVE-2021-29608Heap OOB and null pointer dereference in `RaggedTensorToTensor`
    from 0, < c4d7afb6a5986b04505aca4466ae1951686c80f6, < f94ef358bb3e91d517446454edff6535bcfe8e4a, < b761c9b652af2107cfbc33efd19be0ce41daa33e | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM5.3CVE-2021-29608Heap OOB and null pointer dereference in `RaggedTensorToTensor`
    from 0, < 2.1.4
  • MEDIUM5.3CVE-2020-15204Segfault in Tensorflow
    from 0, < 9a133d73ae4b4664d22bd1aa6d654fec13c52ee1 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • MEDIUM5.3CVE-2020-15204Segfault in Tensorflow
    from 0, < 1.15.4
  • MEDIUM5.3CVE-2020-15191Undefined behavior in Tensorflow
    >= 2.2.0, < 2.2.1
  • MEDIUM5.3CVE-2020-15191Undefined behavior in Tensorflow
    from 0, < 22e07fb204386768e5bcbea563641ea11f96ceb8 | from 0, < 2.2.1, >= 2.3.0rc0, < 2.3.1
  • MEDIUM5.3CVE-2020-15194Denial of Service in Tensorflow
    from 0, < 390611e0d45c5793c7066110af37c8514e6a6c54 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • MEDIUM5.3CVE-2020-15194Denial of Service in Tensorflow
    from 0, < 1.15.4
  • MEDIUM5.3CVE-2020-15190Segfault in Tensorflow
    from 0, < 1.15.4
  • MEDIUM5.3CVE-2020-15190Segfault in Tensorflow
    from 0, < da8558533d925694483d2c136a9220d6d49d843c | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • MEDIUM5.0CVE-2020-5215Segmentation faultin TensorFlow when converting a Python string to `tf.float16`
    from 0, < 5ac1b9e24ff6afc465756edf845d2e9660bd34bf | from 0, < 1.15.2, >= 2.0.0, < 2.0.1
  • MEDIUM5.0CVE-2020-5215Segmentation faultin TensorFlow when converting a Python string to `tf.float16`
    from 0, < 1.15.2
  • MEDIUM4.8CVE-2022-41911Invalid char to bool conversion when printing a tensor in Tensorflow
    >= 2.10.0, < 2.10.1
  • MEDIUM4.8CVE-2022-41910Heap out of bounds read in `QuantizeAndDequantizeV2` in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41909Segfault in `CompositeTensorVariantToComponents` in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41908`CHECK` fail via inputs in `PyFunc` in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41907Overflow in `ResizeNearestNeighborGrad` in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41901`CHECK_EQ` fail via input in `SparseMatrixNNZ` in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41899`CHECK` fail via inputs in `SdcaOptimizer` in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41898`CHECK` fail via inputs in `SparseFillEmptyRowsGrad` in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41897`FractionalMaxPoolGrad` Heap out of bounds read in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41896`tf.raw_ops.Mfcc` crashes in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41895`MirrorPadGrad` heap out of bounds read in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41893`CHECK_EQ` fail in `tf.raw_ops.TensorListResize` in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41891Segfault in `tf.raw_ops.TensorListConcat` in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41890`CHECK` fail in `BCast` overflow in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41888Unckecked rank size in `tf.image.generate_bounding_box_proposals` in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41887Overflow in `tf.keras.losses.poisson` in Tensorflow
    from 0, < 2.9.3
  • MEDIUM4.8CVE-2022-41886Overflow in `ImageProjectiveTransformV2` in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2022-41885Overflow in `FusedResizeAndPadConv2D` in Tensorflow
    from 0, < 2.7.4
  • MEDIUM4.8CVE-2022-41884Seg fault in `ndarray_tensor_bridge` due to zero and large inputs in Tensorflow
    from 0, < 2.8.4
  • MEDIUM4.8CVE-2020-15211Out of bounds access in tensorflow-lite
    from 0, < e11f55585f614645b360563072ffeb5c3eeff162, < cd31fd0ce0449a9e0f83dcad08d6ed7f1d6bef3f, < 46d5b0852528ddfd614ded79bccc75589f801bd9, < 00302787b788c5ff04cb6f62aed5a74d936e86c0, < fff2c8326280c07733828f990548979bdc893859, < 1970c2158b1ffa416d159d03c3370b9a462aee35 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • MEDIUM4.8CVE-2020-15211Out of bounds access in tensorflow-lite
    from 0, < 1.15.4
  • MEDIUM4.8CVE-2020-15201Heap buffer overflow in Tensorflow
    >= 2.3.0, < 2.3.1
  • MEDIUM4.8CVE-2020-15201Heap buffer overflow in Tensorflow
    from 0, < 3cbb917b4714766030b28eba9fb41bb97ce9ee02 | from 0, < 2.3.1
  • MEDIUM4.5CVE-2021-29571Memory corruption in `DrawBoundingBoxesV2`
    from 0, < 2.1.4
  • MEDIUM4.5CVE-2021-29571Memory corruption in `DrawBoundingBoxesV2`
    from 0, < 79865b542f9ffdc9caeb255631f7c56f1d4b6517 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM4.4CVE-2021-37682Use of unitialized value in TFLite
    from 0, < 2.3.4
  • MEDIUM4.4CVE-2021-37682Use of unitialized value in TFLite
    from 0, < 537bc7c723439b9194a358f64d871dd326c18887, < 4a91f2069f7145aab6ba2d8cfe41be8a110c18a5, < 8933b8a21280696ab119b63263babdb54c298538 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • MEDIUM4.4CVE-2021-29592Null pointer dereference in TFLite's `Reshape` operator
    from 0, < f8378920345f4f4604202d4ab15ef64b2aceaa16 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • MEDIUM4.4CVE-2021-29592Null pointer dereference in TFLite's `Reshape` operator
    from 0, < 2.1.4
  • MEDIUM4.4CVE-2020-26271Heap out of bounds access in MakeEdge in TensorFlow
    from 0, < 1.15.5
  • MEDIUM4.4CVE-2020-26271Heap out of bounds access in MakeEdge in TensorFlow
    from 0, < 0cc38aaa4064fd9e79101994ce9872c6d91f816b | from 0, < 1.15.5, >= 2.0.0, < 2.0.4, >= 2.1.0, < 2.1.3, >= 2.2.0, < 2.2.2, >= 2.3.0, < 2.3.2
  • MEDIUM4.4CVE-2020-26270CHECK-fail in LSTM with zero-length input in TensorFlow
    from 0, < 14755416e364f17fb1870882fa778c7fec7f16e3 | from 0, < 1.15.5, >= 2.0.0, < 2.0.4, >= 2.1.0, < 2.1.3, >= 2.2.0, < 2.2.2, >= 2.3.0, < 2.3.2
  • MEDIUM4.4CVE-2020-26270CHECK-fail in LSTM with zero-length input in TensorFlow
    from 0, < 1.15.5
  • MEDIUM4.4CVE-2020-26268Write to immutable memory region in TensorFlow
    from 0, < c1e1fc899ad5f8c725dcbb6470069890b5060bc7 | from 0, < 1.15.5, >= 2.0.0, < 2.0.4, >= 2.1.0, < 2.1.3, >= 2.2.0, < 2.2.2, >= 2.3.0, < 2.3.2
  • MEDIUM4.4CVE-2020-26268Write to immutable memory region in TensorFlow
    from 0, < 1.15.5
  • MEDIUM4.4CVE-2020-26267Lack of validation in data format attributes in TensorFlow
    from 0, < 1.15.5
  • MEDIUM4.4CVE-2020-26267Lack of validation in data format attributes in TensorFlow
    from 0, < ebc70b7a592420d3d2f359e4b1694c236b82c7ae | from 0, < 1.15.5, >= 2.0.0, < 2.0.4, >= 2.1.0, < 2.1.3, >= 2.2.0, < 2.2.2, >= 2.3.0, < 2.3.2
  • MEDIUM4.4CVE-2020-26266Uninitialized memory access in TensorFlow
    from 0, < ace0c15a22f7f054abcc1f53eabbcb0a1239a9e2 | from 0, < 1.15.5, >= 2.0.0, < 2.0.4, >= 2.1.0, < 2.1.3, >= 2.2.0, < 2.2.2, >= 2.3.0, < 2.3.2
  • MEDIUM4.4CVE-2020-26266Uninitialized memory access in TensorFlow
    from 0, < 1.15.5
  • MEDIUM4.3CVE-2022-23578Memory leak in Tensorflow
    from 0, < c79ccba517dbb1a0ccb9b01ee3bd2a63748b60dd | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM4.3CVE-2022-23578Memory leak in Tensorflow
    from 0, < 2.5.3
  • MEDIUM4.3CVE-2022-21733Memory exhaustion in Tensorflow
    from 0, < f68fdab93fb7f4ddb4eb438c8fe052753c9413e8 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM4.3CVE-2022-21733Memory exhaustion in Tensorflow
    from 0, < 2.5.3
  • MEDIUM4.3CVE-2022-21732Memory exhaustion in Tensorflow
    from 0, < 2.5.3
  • MEDIUM4.3CVE-2022-21732Memory exhaustion in Tensorflow
    from 0, < e3749a6d5d1e8d11806d4a2e9cc3123d1a90b75e | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM4.3CVE-2022-23585Memory leak in decoding PNG images in Tensorflow
    from 0, < ab51e5b813573dc9f51efa335aebcf2994125ee9 | from 0, < 2.5.3, >= 2.6.0, < 2.6.3
  • MEDIUM4.3CVE-2022-23585Memory leak in decoding PNG images in Tensorflow
    from 0, < 2.5.3
  • MEDIUM4.3CVE-2020-15192Memory leak in Tensorflow
    >= 2.2.0, < 2.2.1
  • MEDIUM4.3CVE-2020-15192Memory leak in Tensorflow
    from 0, < 22e07fb204386768e5bcbea563641ea11f96ceb8 | from 0, < 2.2.1, >= 2.3.0rc0, < 2.3.1
  • MEDIUM4.0CVE-2020-15213Denial of service in tensorflow-lite
    from 0, < 204945b19e44b57906c9344c0d00120eeeae178a | >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
  • MEDIUM4.0CVE-2020-15213Denial of service in tensorflow-lite
    >= 2.2.0, < 2.2.1
  • LOW3.7CVE-2020-15266Float cast overflow undefined behavior
    from 0, < 2.4.0
  • LOW3.7CVE-2020-15266Float cast overflow undefined behavior
    from 0, < 2.4.0
  • LOW3.6CVE-2021-29612Heap buffer overflow in `BandedTriangularSolve`
    from 0, < 2.1.4
  • LOW3.6CVE-2021-29612Heap buffer overflow in `BandedTriangularSolve`
    from 0, < ba6822bd7b7324ba201a28b2f278c29a98edbef2, < 0ab290774f91a23bebe30a358fde4e53ab4876a0 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW3.6CVE-2021-29611Incomplete validation in `SparseReshape`
    >= 2.3.0, < 2.3.3
  • LOW3.6CVE-2021-29611Incomplete validation in `SparseReshape`
    from 0, < 1d04d7d93f4ed3854abf75d6b712d72c3f70d6b6 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW3.6CVE-2021-29610Invalid validation in `QuantizeAndDequantizeV2`
    from 0, < 2.1.4
  • LOW3.6CVE-2021-29610Invalid validation in `QuantizeAndDequantizeV2`
    from 0, < c5b0d5f8ac19888e46ca14b0e27562e7fbbee9a9 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.6CVE-2019-16778Heap buffer overflow in `UnsortedSegmentSum` in TensorFlow
    from 0, < 1.15.0
  • LOW2.6CVE-2019-16778Heap buffer overflow in `UnsortedSegmentSum` in TensorFlow
    from 0, < db4f9717c41bccc3ce10099ab61996b246099892 | >= 1.0.0, < 1.15.0
  • LOW2.5CVE-2021-29619Segfault in `tf.raw_ops.SparseCountSparseOutput`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29619Segfault in `tf.raw_ops.SparseCountSparseOutput`
    from 0, < 82e6203221865de4008445b13c69b6826d2b28d9 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29618Crash in `tf.transpose` with complex inputs
    from 0, < 1dc6a7ce6e0b3e27a7ae650bfc05b195ca793f88 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29618Crash in `tf.transpose` with complex inputs
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29617Crash in `tf.strings.substr` due to `CHECK`-fail
    from 0, < 890f7164b70354c57d40eda52dcdd7658677c09f | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29617Crash in `tf.strings.substr` due to `CHECK`-fail
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29616Null dereference in Grappler's `TrySimplify`
    from 0, < e6340f0665d53716ef3197ada88936c2a5f7a2d3 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29616Null dereference in Grappler's `TrySimplify`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29615Stack overflow in `ParseAttrValue` with nested tensors
    from 0, < e07e1c3d26492c06f078c7e5bf2d138043e199c1 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29615Stack overflow in `ParseAttrValue` with nested tensors
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29604Division by zero in TFLite's implementation of hashtable lookup
    from 0, < 5117e0851348065ed59c991562c0ec80d9193db2 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29604Division by zero in TFLite's implementation of hashtable lookup
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29603Heap OOB write in TFLite
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29603Heap OOB write in TFLite
    from 0, < c59c37e7b2d563967da813fa50fe20b21f4da683 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29602Division by zero in TFLite's implementation of `DepthwiseConv`
    from 0, < cbda3c6b2dbbd3fbdc482ff8c0170a78ec2e97d0 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29602Division by zero in TFLite's implementation of `DepthwiseConv`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29600Division by zero in TFLite's implementation of `OneHot`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29600Division by zero in TFLite's implementation of `OneHot`
    from 0, < 3ebedd7e345453d68e279cfc3e4072648e5e12e5 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29599Division by zero in TFLite's implementation of Split
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29599Division by zero in TFLite's implementation of Split
    from 0, < b22786e7e9b7bdb6a56936ff29cc7e9968d7bc1d | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29598Division by zero in TFLite's implementation of `SVDF`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29598Division by zero in TFLite's implementation of `SVDF`
    from 0, < 6841e522a3e7d48706a02e8819836e809f738682 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29597Division by zero in TFLite's implementation of `SpaceToBatchNd`
    from 0, < 6d36ba65577006affb272335b7c1abd829010708 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29597Division by zero in TFLite's implementation of `SpaceToBatchNd`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29596Division by zero in TFLite's implementation of `EmbeddingLookup`
    from 0, < f61c57bd425878be108ec787f4d96390579fb83e | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29596Division by zero in TFLite's implementation of `EmbeddingLookup`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29595Division by zero in TFLite's implementation of `DepthToSpace`
    from 0, < 106d8f4fb89335a2c52d7c895b7a7485465ca8d9 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29595Division by zero in TFLite's implementation of `DepthToSpace`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29594Division by zero in TFLite's convolution code
    from 0, < ff489d95a9006be080ad14feb378f2b4dac35552 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29594Division by zero in TFLite's convolution code
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29593Division by zero in TFLite's implementation of `BatchToSpaceNd`
    from 0, < 2c74674348a4708ced58ad6eb1b23354df8ee044 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29593Division by zero in TFLite's implementation of `BatchToSpaceNd`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29590Heap OOB read in TFLite's implementation of `Minimum` or `Maximum`
    from 0, < 953f28dca13c92839ba389c055587cfe6c723578 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29590Heap OOB read in TFLite's implementation of `Minimum` or `Maximum`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29589Division by zero in TFLite's implementation of `GatherNd`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29589Division by zero in TFLite's implementation of `GatherNd`
    from 0, < 8e45822aa0b9f5df4b4c64f221e64dc930a70a9d | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29588Division by zero in TFLite's implementation of `TransposeConv`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29588Division by zero in TFLite's implementation of `TransposeConv`
    from 0, < 801c1c6be5324219689c98e1bd3e0ca365ee834d | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29587Division by zero in TFLite's implementation of `SpaceToDepth`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29587Division by zero in TFLite's implementation of `SpaceToDepth`
    from 0, < 0d45ea1ca641b21b73bcf9c00e0179cda284e7e7 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29586Division by zero in optimized pooling implementations in TFLite
    from 0, < 5f7975d09eac0f10ed8a17dbb6f5964977725adc | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29586Division by zero in optimized pooling implementations in TFLite
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29585Division by zero in padding computation in TFLite
    from 0, < 49847ae69a4e1a97ae7f2db5e217c77721e37948 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29585Division by zero in padding computation in TFLite
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29584CHECK-fail due to integer overflow
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29584CHECK-fail due to integer overflow
    from 0, < 4c0ee937c0f61c4fc5f5d32d9bb4c67428012a60 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29583Heap buffer overflow and undefined behavior in `FusedBatchNorm`
    from 0, < 6972f9dfe325636b3db4e0bc517ee22a159365c0 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29583Heap buffer overflow and undefined behavior in `FusedBatchNorm`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29582Heap OOB read in `tf.raw_ops.Dequantize`
    from 0, < 5899741d0421391ca878da47907b1452f06aaf1b | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29582Heap OOB read in `tf.raw_ops.Dequantize`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29581Segfault in `CTCBeamSearchDecoder`
    from 0, < b1b323042264740c398140da32e93fb9c2c9f33e | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29581Segfault in `CTCBeamSearchDecoder`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29580Undefined behavior and `CHECK`-fail in `FractionalMaxPoolGrad`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29580Undefined behavior and `CHECK`-fail in `FractionalMaxPoolGrad`
    from 0, < 32fdcbff9d06d010d908fcc4bd4b36eb3ce15925 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29579Heap buffer overflow in `MaxPoolGrad`
    from 0, < a74768f8e4efbda4def9f16ee7e13cf3922ac5f7 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29579Heap buffer overflow in `MaxPoolGrad`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29578Heap buffer overflow in `FractionalAvgPoolGrad`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29578Heap buffer overflow in `FractionalAvgPoolGrad`
    from 0, < 12c727cee857fa19be717f336943d95fca4ffe4f | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29577Heap buffer overflow in `AvgPool3DGrad`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29577Heap buffer overflow in `AvgPool3DGrad`
    from 0, < 6fc9141f42f6a72180ecd24021c3e6b36165fe0d | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29576Heap buffer overflow in `MaxPool3DGradGrad`
    from 0, < 63c6a29d0f2d692b247f7bf81f8732d6442fad09 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29576Heap buffer overflow in `MaxPool3DGradGrad`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29575Overflow/denial of service in `tf.raw_ops.ReverseSequence`
    from 0, < ecf768cbe50cedc0a45ce1ee223146a3d3d26d23 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29575Overflow/denial of service in `tf.raw_ops.ReverseSequence`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29574Undefined behavior in `MaxPool3DGradGrad`
    from 0, < a3d9f9be9ac2296615644061b40cefcee341dcc4 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29574Undefined behavior in `MaxPool3DGradGrad`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29573Division by 0 in `MaxPoolGradWithArgmax`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29573Division by 0 in `MaxPoolGradWithArgmax`
    from 0, < 376c352a37ce5a68b721406dc7e77ac4b6cf483d | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29572Reference binding to nullptr in `SdcaOptimizer`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29572Reference binding to nullptr in `SdcaOptimizer`
    from 0, < f7cc8755ac6683131fdfa7a8a121f9d7a9dec6fb | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29570Heap out of bounds read in `MaxPoolGradWithArgmax`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29570Heap out of bounds read in `MaxPoolGradWithArgmax`
    from 0, < dcd7867de0fea4b72a2b34bd41eb74548dc23886 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29569Heap out of bounds read in `RequantizationRange`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29569Heap out of bounds read in `RequantizationRange`
    from 0, < ef0c008ee84bad91ec6725ddc42091e19a30cf0e | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29568Reference binding to null in `ParameterizedTruncatedNormal`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29568Reference binding to null in `ParameterizedTruncatedNormal`
    from 0, < 5e52ef5a461570cfb68f3bdbbebfe972cb4e0fd8 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29567Lack of validation in `SparseDenseCwiseMul`
    from 0, < 7ae2af34087fb4b5c8915279efd03da3b81028bc | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29567Lack of validation in `SparseDenseCwiseMul`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29566Heap OOB access in `Dilation2DBackpropInput`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29566Heap OOB access in `Dilation2DBackpropInput`
    from 0, < 3f6fe4dfef6f57e768260b48166c27d148f3015f | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29565Null pointer dereference in `SparseFillEmptyRows`
    from 0, < faa76f39014ed3b5e2c158593b1335522e573c7f | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29565Null pointer dereference in `SparseFillEmptyRows`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29564Null pointer dereference in `EditDistance`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29564Null pointer dereference in `EditDistance`
    from 0, < f4c364a5d6880557f6f5b6eb5cee2c407f0186b3 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29563CHECK-fail in `tf.raw_ops.RFFT`
    from 0, < 31bd5026304677faa8a0b77602c6154171b9aec1 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29563CHECK-fail in `tf.raw_ops.RFFT`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29562CHECK-fail in `tf.raw_ops.IRFFT`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29562CHECK-fail in `tf.raw_ops.IRFFT`
    from 0, < 1c56f53be0b722ca657cbc7df461ed676c8642a2 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29561CHECK-fail in `LoadAndRemapMatrix`
    from 0, < 77dd114513d7796e1e2b8aece214a380af26fbf4 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29561CHECK-fail in `LoadAndRemapMatrix`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29560Heap buffer overflow in `RaggedTensorToTensor`
    from 0, < a84358aa12f0b1518e606095ab9cfddbf597c121 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29560Heap buffer overflow in `RaggedTensorToTensor`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29559Heap OOB access in unicode ops
    from 0, < 51300ba1cc2f487aefec6e6631fef03b0e08b298 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29559Heap OOB access in unicode ops
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29558Heap buffer overflow in `SparseSplit`
    from 0, < 8ba6fa29cd8bf9cef9b718dc31c78c73081f5b31 | from 0, < 2.1.4, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29558Heap buffer overflow in `SparseSplit`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29557Division by 0 in `SparseMatMul`
    from 0, < 7f283ff806b2031f407db64c4d3edcda8fb9f9f5 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29557Division by 0 in `SparseMatMul`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29556Division by 0 in `Reverse`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29556Division by 0 in `Reverse`
    from 0, < 4071d8e2f6c45c1955a811fee757ca2adbe462c1 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29555Division by 0 in `FusedBatchNorm`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29555Division by 0 in `FusedBatchNorm`
    from 0, < 1a2a87229d1d61e23a39373777c056161eb4084d | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29554Division by 0 in `DenseCountSparseOutput`
    from 0, < da5ff2daf618591f64b2b62d9d9803951b945e9f | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29554Division by 0 in `DenseCountSparseOutput`
    >= 2.3.0, < 2.3.3
  • LOW2.5CVE-2021-29553Heap OOB in `QuantizeAndDequantizeV3`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29553Heap OOB in `QuantizeAndDequantizeV3`
    from 0, < 99085e8ff02c3763a0ec2263e44daec416f6a387 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29552CHECK-failure in `UnsortedSegmentJoin`
    from 0, < 704866eabe03a9aeda044ec91a8d0c83fc1ebdbe | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29552CHECK-failure in `UnsortedSegmentJoin`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29551OOB read in `MatrixTriangularSolve`
    from 0, < 480641e3599775a8895254ffbc0fc45621334f68 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29551OOB read in `MatrixTriangularSolve`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29550Division by 0 in `FractionalAvgPool`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29550Division by 0 in `FractionalAvgPool`
    from 0, < 548b5eaf23685d86f722233d8fbc21d0a4aecb96 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29549Division by 0 in `QuantizedAdd`
    from 0, < 744009c9e5cc5d0447f0dc39d055f917e1fd9e16 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29549Division by 0 in `QuantizedAdd`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29548Division by 0 in `QuantizedBatchNormWithGlobalNormalization`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29548Division by 0 in `QuantizedBatchNormWithGlobalNormalization`
    from 0, < d6ed5bcfe1dcab9e85a4d39931bd18d99018e75b | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29547Heap out of bounds in `QuantizedBatchNormWithGlobalNormalization`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29547Heap out of bounds in `QuantizedBatchNormWithGlobalNormalization`
    from 0, < d6ed5bcfe1dcab9e85a4d39931bd18d99018e75b | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29546Division by 0 in `QuantizedBiasAdd`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29546Division by 0 in `QuantizedBiasAdd`
    from 0, < 67784700869470d65d5f2ef20aeb5e97c31673cb | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29545Heap buffer overflow in `SparseTensorToCSRSparseMatrix`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29545Heap buffer overflow in `SparseTensorToCSRSparseMatrix`
    from 0, < 1e922ccdf6bf46a3a52641f99fd47d54c1decd13 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29544CHECK-fail in `QuantizeAndDequantizeV4Grad`
    >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29544CHECK-fail in `QuantizeAndDequantizeV4Grad`
    from 0, < 20431e9044cf2ad3c0323c34888b192f3289af6b | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29543CHECK-fail in `CTCGreedyDecoder`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29543CHECK-fail in `CTCGreedyDecoder`
    from 0, < ea3b43e98c32c97b35d52b4c66f9107452ca8fb2 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29542Heap buffer overflow in `StringNGrams`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29542Heap buffer overflow in `StringNGrams`
    from 0, < ba424dd8f16f7110eea526a8086f1a155f14f22b | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29541Null pointer dereference in `StringNGrams`
    from 0, < ba424dd8f16f7110eea526a8086f1a155f14f22b | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29541Null pointer dereference in `StringNGrams`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29540Heap buffer overflow in `Conv2DBackpropFilter`
    from 0, < c570e2ecfc822941335ad48f6e10df4e21f11c96 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29540Heap buffer overflow in `Conv2DBackpropFilter`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29539Segfault in tf.raw_ops.ImmutableConst
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29539Segfault in tf.raw_ops.ImmutableConst
    from 0, < 4f663d4b8f0bec1b48da6fa091a7d29609980fa4 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29538Division by zero in `Conv2DBackpropFilter`
    from 0, < c570e2ecfc822941335ad48f6e10df4e21f11c96 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29538Division by zero in `Conv2DBackpropFilter`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29537Heap buffer overflow in `QuantizedResizeBilinear`
    from 0, < f6c40f0c6cbf00d46c7717a26419f2062f2f8694 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29537Heap buffer overflow in `QuantizedResizeBilinear`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29536Heap buffer overflow in `QuantizedReshape`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29536Heap buffer overflow in `QuantizedReshape`
    from 0, < a324ac84e573fba362a5e53d4e74d5de6729933e | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29535Heap buffer overflow in `QuantizedMul`
    from 0, < efea03b38fb8d3b81762237dc85e579cc5fc6e87 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29535Heap buffer overflow in `QuantizedMul`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29534CHECK-fail in SparseConcat
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29534CHECK-fail in SparseConcat
    from 0, < 69c68ecbb24dff3fa0e46da0d16c821a2dd22d7c | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29533CHECK-fail in DrawBoundingBoxes
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29533CHECK-fail in DrawBoundingBoxes
    from 0, < b432a38fe0e1b4b904a6c222cbce794c39703e87 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29532Heap out of bounds read in `RaggedCross`
    from 0, < 44b7f486c0143f68b56c34e2d01e146ee445134a | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29532Heap out of bounds read in `RaggedCross`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29531CHECK-fail in tf.raw_ops.EncodePng
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29531CHECK-fail in tf.raw_ops.EncodePng
    from 0, < 26eb323554ffccd173e8a79a8c05c15b685ae4d1 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29530Invalid validation in `SparseMatrixSparseCholesky`
    from 0, < e6a7c7cc18c3aaad1ae0872cb0a959f5c923d2bd | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29530Invalid validation in `SparseMatrixSparseCholesky`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29529Heap buffer overflow caused by rounding
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29529Heap buffer overflow caused by rounding
    from 0, < f851613f8f0fb0c838d160ced13c134f778e3ce7 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29528Division by 0 in `QuantizedMul`
    from 0, < a1b11d2fdd1e51bfe18bb1ede804f60abfa92da6 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29528Division by 0 in `QuantizedMul`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29527Division by 0 in `QuantizedConv2D`
    from 0, < cfa91be9863a91d5105a3b4941096044ab32036b | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29527Division by 0 in `QuantizedConv2D`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29526Division by 0 in `Conv2D`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29526Division by 0 in `Conv2D`
    from 0, < b12aa1d44352de21d1a6faaf04172d8c2508b42b | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29525Division by 0 in `Conv2DBackpropInput`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29525Division by 0 in `Conv2DBackpropInput`
    from 0, < 2be2cdf3a123e231b16f766aa0e27d56b4606535 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29524Division by 0 in `Conv2DBackpropFilter`
    from 0, < fca9874a9b42a2134f907d2fb46ab774a831404a | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29524Division by 0 in `Conv2DBackpropFilter`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29523CHECK-fail in AddManySparseToTensorsMap
    from 0, < 69c68ecbb24dff3fa0e46da0d16c821a2dd22d7c | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29523CHECK-fail in AddManySparseToTensorsMap
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29522Division by 0 in `Conv3DBackprop*`
    from 0, < 311403edbc9816df80274bd1ea8b3c0c0f22c3fa | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29522Division by 0 in `Conv3DBackprop*`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29521Segfault in SparseCountSparseOutput
    >= 2.3.0, < 2.3.3
  • LOW2.5CVE-2021-29521Segfault in SparseCountSparseOutput
    from 0, < c57c0b9f3a4f8684f3489dd9a9ec627ad8b599f5 | >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29520Heap buffer overflow in `Conv3DBackprop*`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29520Heap buffer overflow in `Conv3DBackprop*`
    from 0, < 8f37b52e1320d8d72a9529b2468277791a261197 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29519CHECK-fail in SparseCross due to type confusion
    from 0, < b1cc5e5a50e7cee09f2c6eb48eb40ee9c4125025 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29519CHECK-fail in SparseCross due to type confusion
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29518Session operations in eager mode lead to null pointer dereferences
    from 0, < ff70c47a396ef1e3cb73c90513da4f5cb71bebba | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29518Session operations in eager mode lead to null pointer dereferences
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29517Division by zero in `Conv3D`
    from 0, < 799f835a3dfa00a4d852defa29b15841eea9d64f | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29517Division by zero in `Conv3D`
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29516Null pointer dereference via invalid Ragged Tensors
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29516Null pointer dereference via invalid Ragged Tensors
    from 0, < b055b9c474cd376259dde8779908f9eeaf097d93 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29515Reference binding to null pointer in `MatrixDiag*` ops
    from 0, < a7116dd3913c4a4afd2a3a938573aa7c785fdfc6 | from 0, < 2.1.4, >= 2.2.0, < 2.2.3, >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29515Reference binding to null pointer in `MatrixDiag*` ops
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29514Heap out of bounds write in `RaggedBinCount`
    >= 2.3.0, < 2.3.3
  • LOW2.5CVE-2021-29514Heap out of bounds write in `RaggedBinCount`
    from 0, < eebb96c2830d48597d055d247c0e9aebaea94cd5 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29513Type confusion during tensor casts lead to dereferencing null pointers
    from 0, < 030af767d357d1b4088c4a25c72cb3906abac489 | from 0, < 2.2.0rc0, >= 2.2.0, < 2.3.0rc0, >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
  • LOW2.5CVE-2021-29513Type confusion during tensor casts lead to dereferencing null pointers
    from 0, < 2.1.4
  • LOW2.5CVE-2021-29512Heap buffer overflow in `RaggedBinCount`
    from 0, < eebb96c2830d48597d055d247c0e9aebaea94cd5 | >= 2.3.0, < 2.3.3, >= 2.4.0, < 2.4.2
  • LOW2.5CVE-2021-29512Heap buffer overflow in `RaggedBinCount`
    >= 2.3.0, < 2.3.3