Google

Tensorflow

432 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.04%
  • Published 21.05.2022 00:15:11
  • Last modified 21.11.2024 06:58:43

TensorFlow is an open source platform for machine learning. In version 2.8.0, the `TensorKey` hash function used total estimated `AllocatedBytes()`, which (a) is an estimate per tensor, and (b) is a very poor hash function for constants (e.g. `int32_...

Exploit
  • EPSS 0.08%
  • Published 21.05.2022 00:15:11
  • Last modified 21.11.2024 06:58:43

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implementation of `tf.histogram_fixed_width` is vulnerable to a crash when the values array contain `Not a Number` (`NaN`) elements. The...

Exploit
  • EPSS 0.08%
  • Published 21.05.2022 00:15:11
  • Last modified 21.11.2024 06:58:43

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, certain TFLite models that were created using TFLite model converter would crash when loaded in the TFLite interpreter. The culprit is that ...

Exploit
  • EPSS 0.08%
  • Published 21.05.2022 00:15:11
  • Last modified 21.11.2024 06:58:43

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the `tf.compat.v1.signal.rfft2d` and `tf.compat.v1.signal.rfft3d` lack input validation and under certain condition can result in crashes (d...

Exploit
  • EPSS 0.27%
  • Published 21.05.2022 00:15:11
  • Last modified 21.11.2024 06:58:44

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, TensorFlow's `saved_model_cli` tool is vulnerable to a code injection. This can be used to open a reverse shell. This code path was maintain...

Exploit
  • EPSS 0.06%
  • Published 20.05.2022 23:15:45
  • Last modified 21.11.2024 06:58:43

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implementation of `tf.raw_ops.EditDistance` has incomplete validation. Users can pass negative values to cause a segmentation fault base...

Exploit
  • EPSS 0.04%
  • Published 20.05.2022 23:15:44
  • Last modified 21.11.2024 06:58:42

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implementation of `tf.raw_ops.QuantizedConv2D` does not fully validate the input arguments. In this case, references get bound to `nullp...

Exploit
  • EPSS 0.05%
  • Published 20.05.2022 23:15:44
  • Last modified 21.11.2024 06:58:42

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implementation of `tf.ragged.constant` does not fully validate the input arguments. This results in a denial of service by consuming all...

Exploit
  • EPSS 0.05%
  • Published 20.05.2022 23:15:44
  • Last modified 21.11.2024 06:58:42

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implementation of `tf.raw_ops.SpaceToBatchND` (in all backends such as XLA and handwritten kernels) is vulnerable to an integer overflow...

Exploit
  • EPSS 0.05%
  • Published 20.05.2022 23:15:44
  • Last modified 25.06.2025 21:00:03

TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implementation of `tf.raw_ops.UnsortedSegmentJoin` does not fully validate the input arguments. This results in a `CHECK`-failure which ...