tensorflow@2.3.0 vulnerabilities
TensorFlow is an open source machine learning framework for everyone.
-
latest version
2.18.0
-
latest non vulnerable version
-
first published
8 years ago
-
latest version published
22 days ago
-
licenses detected
- [0,)
Direct Vulnerabilities
Known vulnerabilities in the tensorflow package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow or Wraparound due to the How to fix Integer Overflow or Wraparound? Upgrade |
[,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a malicious invalid input with zero dimension, which crashes a TensorFlow model (Check Failed). Note: An attacker must have privilege to provide input to a How to fix Denial of Service (DoS)? Upgrade |
[,2.11.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. Attackers can access heap memory which is not in the control of user, leading to a crash or remote code execution. The fix will be included in TensorFlow version 2.12.0 and will also cherrypick this commit on TensorFlow version 2.11.1. How to fix Heap-based Buffer Overflow? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference when How to fix NULL Pointer Dereference? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when running with XLA, How to fix Denial of Service (DoS)? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference due to a null pointer error in How to fix NULL Pointer Dereference? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a floating point exception in How to fix Denial of Service (DoS)? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. The function How to fix NULL Pointer Dereference? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Incorrect Comparison. Constructing a How to fix Incorrect Comparison? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). When running with XLA, How to fix Denial of Service (DoS)? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow in How to fix Buffer Overflow? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow to Buffer Overflow when How to fix Integer Overflow to Buffer Overflow? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow or Wraparound in How to fix Integer Overflow or Wraparound? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds due to mismatched integer type sizes in How to fix Out-of-Bounds? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a floating point exception if the stride and window size are not positive for How to fix Denial of Service (DoS)? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. When How to fix NULL Pointer Dereference? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). When the parameter How to fix Denial of Service (DoS)? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Double Free. The How to fix Double Free? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference in How to fix NULL Pointer Dereference? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a floating point exception in How to fix Denial of Service (DoS)? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read if the parameter How to fix Out-of-bounds Read? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read in How to fix Out-of-bounds Read? Upgrade |
[,2.11.1)
[2.12.0rc0,2.12.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to another discovered instance of CVE-2022-35991, in How to fix Denial of Service (DoS)? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow in How to fix Heap-based Buffer Overflow? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to another discovered instance of CVE-2022-35935 in How to fix Denial of Service (DoS)? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Write via the How to fix Out-of-bounds Write? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds in How to fix Out-of-Bounds? Upgrade |
[,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Always-Incorrect Control Flow Implementation when a numpy array is created with a shape such that one element is zero and the sum of others is a large number. How to fix Always-Incorrect Control Flow Implementation? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow via How to fix Buffer Overflow? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Incorrect Calculation of Buffer Size via How to fix Incorrect Calculation of Buffer Size? Upgrade |
[,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read when the How to fix Out-of-bounds Read? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow via How to fix Buffer Overflow? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Incorrect Calculation of Buffer Size when How to fix Incorrect Calculation of Buffer Size? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation due to a missing check of How to fix Improper Input Validation? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) because the conversions from How to fix Denial of Service (DoS)? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Reachable Assertion when How to fix Reachable Assertion? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read. This is If How to fix Out-of-bounds Read? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference because the pywrap code fails to parse the tensor and returns a How to fix NULL Pointer Dereference? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow. The reference kernel of the Note: This attack only works if the reference kernel resolver is used in the interpreter. How to fix Buffer Overflow? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when an input How to fix Denial of Service (DoS)? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is vulnerable when an input How to fix Denial of Service (DoS)? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Write in How to fix Out-of-bounds Write? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when the input How to fix Denial of Service (DoS)? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to the inputs How to fix Denial of Service (DoS)? Upgrade |
[,2.8.4)
[2.9.0,2.9.3)
[2.10.0,2.10.1)
[2.11.0rc0,2.11.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read via the How to fix Out-of-bounds Read? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference when How to fix NULL Pointer Dereference? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) in How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Write via the How to fix Out-of-bounds Write? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via CHECK-failure caused by assuming input(0), input(1), and input(2) to be scalar. How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read. The How to fix Out-of-bounds Read? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when the How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when the How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation due to improper validation of How to fix Improper Input Validation? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference when How to fix NULL Pointer Dereference? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when the How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow or Wraparound. The How to fix Integer Overflow or Wraparound? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to improper input validation of How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to improper input validation of How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when
How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when a nonscalar How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to improper input validation in How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference when How to fix NULL Pointer Dereference? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation when converting transposed convolutions using per-channel weight quantization, the converter segfaults and crashes the Python process. How to fix Improper Input Validation? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference through How to fix NULL Pointer Dereference? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation when How to fix Improper Input Validation? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Division by zero when How to fix Division by zero? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when providing an empty function attributes to How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow or Wraparound when How to fix Integer Overflow or Wraparound? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a How to fix Denial of Service (DoS)? Upgrade |
[,2.7.2)
[2.8.0,2.8.1)
[2.9.0,2.9.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). The implementation of depthwise ops in TensorFlow is vulnerable to a denial of service via
This is due to an incomplete fix for CVE-2021-41197. How to fix Denial of Service (DoS)? Upgrade |
[2.8.0,2.8.1)
[2.7.0,2.7.2)
[,2.6.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via the implementation of Note: This only occurs on the CPU implementation. How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation because the implementation of How to fix Improper Input Validation? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference when the resource handle is empty. How to fix NULL Pointer Dereference? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). Certain How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) because the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). The implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to the implementation of `tf.ragged.constant not fully validating the input arguments. How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Type Confusion because the macros used for writing assertions (e.g., How to fix Type Confusion? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference when calling How to fix NULL Pointer Dereference? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow or Wraparound due to the improper implementation of How to fix Integer Overflow or Wraparound? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation because the implementation of How to fix Improper Input Validation? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Write because the implementation of How to fix Out-of-bounds Write? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to improper input validation under certain condition in How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) where the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Remote Code Execution (RCE) due to improper fix of CVE-2021-41228. Exploiting this vulnerability is possible via the How to fix Remote Code Execution (RCE)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) where the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) where the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) where the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) where the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) where the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.6.4)
[2.7.0,2.7.2)
[2.8.0,2.8.1)
[2.9.0rc0,2.9.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow or Wraparound via the Grappler component during cost estimation for crop and resize due to these parameters being user-controlled. How to fix Integer Overflow or Wraparound? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via an invalidated How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference via the implementation of How to fix NULL Pointer Dereference? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via a maliciously altered How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bound via a typo in TensorFlow's How to fix Out-of-Bound? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Write via the How to fix Out-of-bounds Write? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via an assertion failure. If some conditions are met, it's possible for a type to fail to specialize during shape inference. The How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference during the process of decoding a tensor from protobuf. If attributes of some mutable arguments to some operations are missing from the proto a null pointer dereference occurs. This should be taken care of by a How to fix NULL Pointer Dereference? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via a How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via a crafted TFLite model that would trigger a division by zero in How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow or Wraparound via a maliciously crafted TFLite model that would cause an integer overflow in the How to fix Integer Overflow or Wraparound? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Use of Uninitialized Resource via the implementation of the How to fix Use of Uninitialized Resource? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via the How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Race Condition via the How to fix Race Condition? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Write via a crafted TFLite model that would cause a write outside of bounds of an array in TFLite. It is possible to override the linked list used by the memory allocator. How to fix Out-of-bounds Write? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow. An attacker can craft a How to fix Integer Overflow? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds in How to fix Out-of-Bounds? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
[2.8.0rc0,2.8.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow in the How to fix Integer Overflow? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
[2.8.0rc0,2.8.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Use After Free in How to fix Use After Free? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via invalid PNG images that are put through the decoding process. After calling How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow by letting the runtime assume that the How to fix Buffer Overflow? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) by allocating a large vector, based on a value from a tensor controlled by the user during shape inference. How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This can be caused by altering a How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) by altering a How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via an altering of a How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference via the Grappler component. This can occur twice for the same malicious alteration of a How to fix NULL Pointer Dereference? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via the altering of a How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow or Wraparound via the implementation of How to fix Integer Overflow or Wraparound? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference when How to fix NULL Pointer Dereference? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
[2.8.0rc0,2.8.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) by altering a How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer overflow in How to fix Integer overflow? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to integer overflow in How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) in How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow in shape inference for How to fix Buffer Overflow? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds which does not fully validate the value of How to fix Out-of-Bounds? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds in How to fix Out-of-Bounds? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow in How to fix Integer Overflow? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow in How to fix Integer Overflow? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation in How to fix Improper Input Validation? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via the implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Type Confusion in shape inference for How to fix Type Confusion? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow or Wraparound via the implementation of How to fix Integer Overflow or Wraparound? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Division by zero when executing convolution operators. How to fix Division by zero? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read which does not fully validate the value of How to fix Out-of-bounds Read? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via the implementation of the How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via the implementation of the How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via the implementation of ###PoC
How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference via the implementation of the ###PoC
How to fix NULL Pointer Dereference? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via the implementation of ###PoC
How to fix Denial of Service (DoS)? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow via the implementation of ###PoC
How to fix Heap-based Buffer Overflow? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Division by zero via a specially crafted TFLite model that would trigger the division in the implementation of How to fix Division by zero? Upgrade |
[,2.5.3)
[2.6.0,2.6.3)
[2.7.0,2.7.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Access of Uninitialized Pointer due to binding a reference to How to fix Access of Uninitialized Pointer? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Divide By Zero which is triggered by implementations for convolution operators if passed empty filter tensor arguments. How to fix Divide By Zero? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). If How to fix Denial of Service (DoS)? Upgrade |
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). When How to fix Denial of Service (DoS)? Upgrade |
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). Implementation of How to fix Denial of Service (DoS)? Upgrade |
[2.7.0rc1,2.7.0)
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). How to fix Denial of Service (DoS)? Upgrade |
[2.6.0rc0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) if How to fix Denial of Service (DoS)? Upgrade |
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) which can be triggered in affected versions of the How to fix Denial of Service (DoS)? Upgrade |
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds. The shape inference functions for the How to fix Out-of-Bounds? Upgrade |
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow in the implementation of How to fix Buffer Overflow? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow. The implementation of How to fix Buffer Overflow? Upgrade |
[2.7.0rc1,2.7.0)
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow in the shape inference function for How to fix Heap-based Buffer Overflow? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read in the shape inference code for How to fix Out-of-bounds Read? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds in How to fix Out-of-Bounds? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read. The shape inference functions for How to fix Out-of-bounds Read? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Use of Uninitialized Variable. During execution, How to fix Use of Uninitialized Variable? Upgrade |
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). During TensorFlow's Grappler optimizer phase, constant folding might attempt to deep copy a resource tensor, which will cause a segfault. How to fix Denial of Service (DoS)? Upgrade |
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Access of Uninitialized Pointer via How to fix Access of Uninitialized Pointer? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Deserialization of Untrusted Data due to the shape inference code for How to fix Deserialization of Untrusted Data? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). The process of building the control flow graph for a TensorFlow model is vulnerable to a null pointer exception when nodes that should be paired are not. How to fix Denial of Service (DoS)? Upgrade |
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds. The shape inference code for How to fix Out-of-Bounds? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow which could trick the shape inference code for the How to fix Heap-based Buffer Overflow? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via How to fix Denial of Service (DoS)? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to missing validation for invalid file formats via checkpoints loading infrastructure. How to fix Denial of Service (DoS)? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. The implementation of How to fix Improper Input Validation? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read via the How to fix Out-of-bounds Read? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via How to fix Denial of Service (DoS)? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to missing validation, the attacker can trigger DoS via dereferencing How to fix Denial of Service (DoS)? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow. When calculating the size of the output within the How to fix Buffer Overflow? Upgrade |
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Use of Uninitialized Variable in TensorFlow's Grappler optimizer. If the How to fix Use of Uninitialized Variable? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Remote Code Execution (RCE) via TensorFlow's How to fix Remote Code Execution (RCE)? Upgrade |
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Remote Code Execution (RCE) via TensorFlow's How to fix Remote Code Execution (RCE)? Upgrade |
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to missing validation for the shapes of the tensor arguments involved in the call. How to fix Denial of Service (DoS)? Upgrade |
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to missing validation for the shapes of the tensor arguments involved in the call. How to fix Denial of Service (DoS)? Upgrade |
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to missing validation for the shapes of the tensor arguments involved in the call. How to fix Denial of Service (DoS)? Upgrade |
[2.6.0rc0,2.6.1)
[2.5.0rc0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Divide By Zero via How to fix Divide By Zero? Upgrade |
[2.7.0rc0,2.7.0)
[2.6.0,2.6.1)
[2.5.0,2.5.2)
[,2.4.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). Under certain conditions, Go code can trigger a segfault in string deallocation. For string tensors, How to fix Denial of Service (DoS)? Upgrade |
[,2.5.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) as, when running shape functions, some functions (such as How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Arbitrary Code Execution. TensorFlow and Keras can be tricked to perform arbitrary code execution when deserializing a Keras model from YAML format. The implementation uses How to fix Arbitrary Code Execution? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). An attacker can trigger a denial of service via a How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation as, due to incomplete validation in How to fix Improper Input Validation? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation as, due to incomplete validation in How to fix Improper Input Validation? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). An attacker can trigger a denial of service via a segmentation fault in This is related to CVE-2021-29579, where the fixes were incomplete. How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). An attacker can cause denial of service in applications serving models using How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. The implementations of pooling in TFLite are vulnerable to division by 0 errors as there are no checks for divisors not being 0. How to fix Improper Input Validation? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation as, due to incomplete validation in MKL implementation of requantization, an attacker can trigger undefined behavior via binding a reference to a null pointer or can access data outside the bounds of heap allocated arrays. The implementation does not validate the dimensions of the How to fix Improper Input Validation? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds. An attacker can read from outside of bounds of heap allocated data by sending specially crafted illegal arguments to How to fix Out-of-Bounds? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). The shape inference code for How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). An attacker can cause denial of service in applications serving models using How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. An attacker can cause undefined behavior via binding a reference to null pointer in How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. An attacker can read from outside of bounds of heap allocated data by sending specially crafted illegal arguments to How to fix Improper Input Validation? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). An attacker can craft a TFLite model that would trigger a division by zero error in LSH implementation. How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read. It is possible to nest a How to fix Out-of-bounds Read? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. An attacker can cause undefined behavior via binding a reference to null pointer in How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. An attacker can cause undefined behavior via binding a reference to null pointer in How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. An attacker can cause undefined behavior via binding a reference to null pointer in How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). Most implementations of convolution operators in TensorFlow are affected by a division by 0 vulnerability where an attacker can trigger a denial of service via a crash. The shape inference implementation is missing several validations before doing divisions and modulo operations. How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. An attacker can cause undefined behavior via binding a reference to null pointer in How to fix Improper Input Validation? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. The code for How to fix Improper Input Validation? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow. The implementation of How to fix Integer Overflow? Upgrade |
[2.5.0,2.5.1)
[,2.4.3)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. The implementation for How to fix Improper Input Validation? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow. The implementation of How to fix Integer Overflow? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). An attacker can cause a denial of service in How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Use After Free. The implementation for How to fix Use After Free? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. The implementation for How to fix Heap-based Buffer Overflow? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. An attacker can generate undefined behavior via a reference binding to nullptr in How to fix Improper Input Validation? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. An attacker can cause undefined behavior via binding a reference to null pointer in How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. An attacker can cause undefined behavior via binding a reference to null pointer in all operations of type How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. An attacker can cause undefined behavior via binding a reference to null pointer in all operations of type How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read as, if the arguments to How to fix Out-of-bounds Read? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read. An attacker can read from outside of bounds of heap allocated data by sending specially crafted illegal arguments to How to fix Out-of-bounds Read? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation as providing a negative element to How to fix Improper Input Validation? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. An attacker can cause undefined behavior via binding a reference to null pointer in all binary cwise operations that don't require broadcasting (e.g., gradients of binary cwise operations). The implementation assumes that the two inputs have exactly the same number of elements but does not check that. Hence, when the eigen functor executes it triggers heap OOB reads and undefined behavior due to binding to nullptr. How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds. An attacker can trigger a crash via a How to fix Out-of-Bounds? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds as the implementation of sparse reduction operations in TensorFlow can trigger accesses outside of bounds of heap allocated data. The implementation fails to validate that each reduction group does not overflow and that each corresponding index does not point to outside the bounds of the input tensor. How to fix Out-of-Bounds? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. An attacker can trigger a read from outside of bounds of heap allocated data by sending invalid arguments to How to fix Heap-based Buffer Overflow? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. An attacker can trigger a read from outside of bounds of heap allocated data by sending invalid arguments to How to fix Heap-based Buffer Overflow? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. The code for How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. It is possible to trigger a null pointer dereference in TensorFlow by passing an invalid input to How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. When a user does not supply arguments that determine a valid sparse tensor, How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. If a user does not provide a valid padding value to How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds. When restoring tensors via raw APIs, if the tensor name is not provided, TensorFlow can be tricked into dereferencing a null pointer. Alternatively, attackers can read memory outside the bounds of heap allocated data by providing some tensor names but not enough for a successful restoration. The implementation retrieves the tensor list corresponding to the How to fix Out-of-Bounds? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. Sending invalid argument for How to fix NULL Pointer Dereference? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) as the implementation of How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) as the implementation of How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). An attacker can cause a floating point exception by calling in-place operations with crafted arguments that would result in a division by 0. The implementation has a logic error: it should skip processing if How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). An attacker can trigger a crash via a floating point exception in How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). The implementation of How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). The implementation of How to fix Denial of Service (DoS)? Upgrade |
[2.5.0,2.5.1)
[2.4.0,2.4.3)
[,2.3.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) via a crafted archive when NOTE: This CVE is disputed as the vendor's position is that UPDATE: With the addition of a clear warning to the API documentation on Feb 23, 2023, this issue is considered fixed. How to fix Arbitrary File Write via Archive Extraction (Zip Slip)? Upgrade |
[,2.12.0rc1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds. Incomplete validation in How to fix Out-of-Bounds? Upgrade |
[2.4.0,2.4.2)
[2.3.0,2.3.3)
[2.2.0,2.2.3)
[,2.1.4)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) via How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Validation in How to fix Improper Validation? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference in Grappler's How to fix NULL Pointer Dereference? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). A crash can occur in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to a segfault in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow in How to fix Heap-based Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). A crash in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow in How to fix Heap-based Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). Due to lack of validation in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference in How to fix NULL Pointer Dereference? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This can be caused by exploiting a How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference in How to fix NULL Pointer Dereference? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). Due to lack of validation in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to a division by zero in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read. Due to lack of validation in How to fix Out-of-bounds Read? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). Incomplete validation in How to fix Denial of Service (DoS)? Upgrade |
[2.3.0,2.5.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow in the implementation of How to fix Heap-based Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Validation. The validation in How to fix Improper Validation? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to division by zero in TFLite's implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to a division by zero in padding computation in TFLite. How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to a division by zero in TFLite's implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow via TFLite concatenation.
An attacker can craft a model such that the dimensions of one of the concatenation input overflow the values of How to fix Integer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference in TFLite's How to fix NULL Pointer Dereference? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) in TFLite's convolution code. How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to a division by zero in TFLite's implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read in TFLite's implementation of How to fix Out-of-bounds Read? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to division by zero in TFLite's implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is caused by division by zero in optimized pooling implementations in TFLite. How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to looping TFLite subgraph. How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to a division by zero in TFLite's implementation of hashtable lookup. How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to a division by zero in TFLite's implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to a division by zero in TFLite's implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to a division by zero in TFLite's implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to a division by zero in TFLite's implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Write. If How to fix Out-of-bounds Write? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to a division by zero in TFLite's implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read. A specially crafted TFLite model could trigger an OOB read on heap in the TFLite implementation of How to fix Out-of-bounds Read? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow in TFLite memory allocation.
An attacker can craft a model such that the How to fix Integer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). This is due to a division by zero in TFLite's implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a division by 0 in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation due to reference binding to null in How to fix Improper Input Validation? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to division by 0 in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to CHECK-fail in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read due to heap OOB in How to fix Out-of-bounds Read? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds due to heap out of bounds read in How to fix Out-of-Bounds? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference due to type confusion during tensor casts lead to dereferencing null pointers. Calling TF operations with tensors of non-numeric types when the operations expect numeric tensors result in null pointer dereferences. How to fix NULL Pointer Dereference? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds due to memory corruption in How to fix Out-of-Bounds? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow due to heap buffer overflow in How to fix Heap-based Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow due to heap buffer overflow in How to fix Heap-based Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to division by 0 in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow due to heap buffer overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to CHECK-fail due to integer overflow.
An attacker can trigger a denial of service via a How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to CHECK-fail in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to division by 0 in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow due to heap buffer overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to Segfault in tf.raw_ops.ImmutableConst.
Calling How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to division by 0 in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow due to heap buffer overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow due to heap buffer overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow due to .eap buffer overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds due to heap OOB access in unicode ops.
An attacker can access data outside of bounds of heap allocated array in How to fix Out-of-Bounds? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds due to heap out of bounds write in How to fix Out-of-Bounds? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to division by 0 in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to CHECK-fail in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to undefined behavior in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds due to heap out of bounds read in How to fix Out-of-Bounds? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to CHECK-fail in DrawBoundingBoxes.
An attacker can trigger a denial of service via a How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to overflow/denial of service in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to division by 0 in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow due to heap buffer overflow caused by rounding.
An attacker can trigger a heap buffer overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Insufficient Validation. Incomplete validation in How to fix Insufficient Validation? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to CHECK-fail in SparseConcat.
An attacker can trigger a denial of service via a How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to division by zero in TFLite's implementation of How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to division by 0 in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. An attacker can trigger a dereference of a null pointer in How to fix NULL Pointer Dereference? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds due to heap OOB access in How to fix Out-of-Bounds? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to undefined behavior and How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to division by 0 in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. An attacker can trigger a null pointer dereference in the implementation of How to fix NULL Pointer Dereference? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow. An attacker can trigger a division by 0 in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). An attacker can trigger an integer division by zero undefined behavior in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds in How to fix Out-of-Bounds? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) in SparseCountSparseOutput.
Specifying a negative dense shape in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). CHECK-fail in AddManySparseToTensorsMap.
An attacker can trigger a denial of service via a How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. Null pointer dereference in How to fix Improper Input Validation? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) in tf.raw_ops.EncodePng.
An attacker can trigger a How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. Null pointer dereference via invalid Ragged Tensors.
Calling How to fix NULL Pointer Dereference? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a division by 0 in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a division by zero in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. Session operations in eager mode lead to null pointer dereferences. In eager mode (default in TF 2.0 and later), session operations are invalid. However, users could still call the raw ops associated with them and trigger a null pointer dereference. How to fix NULL Pointer Dereference? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a CHECK-failure in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a CHECK-fail in SparseCross due to type confusion.
The API of How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). An attacker can trigger a null pointer dereference by providing an invalid How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). The How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow in How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a division by 0 in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). OOB read in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a CHECK-fail in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds. Heap out of bounds read in How to fix Out-of-Bounds? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a Division by 0 in How to fix Denial of Service (DoS)? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow. If the How to fix Buffer Overflow? Upgrade |
[,2.1.4)
[2.2.0,2.2.3)
[2.3.0,2.3.3)
[2.4.0,2.4.2)
|
|
[2.4.0rc0,2.4.0)
[2.3.0,2.3.2)
[2.2.0,2.2.2)
[2.1.0,2.1.3)
[2.0.0,2.0.4)
[,1.15.5)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. Under certain cases, a saved model can trigger use of uninitialized values during code execution. This is caused by having tensor buffers be filled with the default value of the type but forgetting to default initialize the quantized floating point types in Eigen. How to fix Improper Input Validation? Upgrade |
[0,1.15.5)
[2.0.0,2.0.4)
[0,2.1.3)
[2.2.0,2.2.2)
[2.3.0,2.3.2)
[2.4.0rc0,2.4.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. The How to fix Improper Input Validation? Upgrade |
[,2.4.0rc0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. The How to fix Improper Input Validation? Upgrade |
[,1.15.5)
[2.0.0,2.0.4)
[2.1.0,2.1.3)
[2.2.0,2.2.2)
[2.3.0,2.3.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). Running an LSTM/GRU model where the LSTM/GRU layer receives an input with zero-length results in a How to fix Denial of Service (DoS)? Upgrade |
[,1.15.5)
[2.0.0,2.0.4)
[2.1.0,2.1.3)
[2.2.0,2.2.2)
[2.3.0,2.3.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Uninitialized Memory Exposure. Under certain cases, loading a saved model can result in accessing uninitialized memory while building the computation graph. The How to fix Uninitialized Memory Exposure? Upgrade |
[,1.15.5)
[2.0.0,2.0.4)
[2.1.0,2.1.3)
[2.2.0,2.2.2)
[2.3.0,2.3.2)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). When the How to fix Denial of Service (DoS)? Upgrade |
[,2.4.0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). An attacker can pass an invalid How to fix Denial of Service (DoS)? Upgrade |
[,2.4.0rc0)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). Changing the TensorFlow's How to fix Denial of Service (DoS)? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. The How to fix Heap-based Buffer Overflow? Upgrade |
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. The How to fix Heap-based Buffer Overflow? Upgrade |
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. The How to fix Heap-based Buffer Overflow? Upgrade |
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. If a user passes an invalid argument to How to fix NULL Pointer Dereference? Upgrade |
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. If a TFLite saved model uses the same tensor as both input and output of an operator, then, depending on the operator, we can observe a segmentation fault or just memory corruption. How to fix Improper Input Validation? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. The implementation of How to fix Heap-based Buffer Overflow? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Uninitialized Memory Exposure. The implementation of How to fix Uninitialized Memory Exposure? Upgrade |
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. A crafted TFLite model can force a node to have as input a tensor backed by a How to fix NULL Pointer Dereference? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). Models using segment sum can trigger a denial of service by causing an out of memory allocation in the implementation of segment sum. Since code uses the last element of the tensor holding them to determine the dimensionality of output tensor, attackers can use a very large value to trigger a large allocation. How to fix Denial of Service (DoS)? Upgrade |
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Uninitialized Memory Exposure. If a user passes a list of strings to How to fix Uninitialized Memory Exposure? Upgrade |
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds. During validation at model loading time. the How to fix Out-of-Bounds? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. The How to fix Heap-based Buffer Overflow? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Numeric Truncation Error. The How to fix Numeric Truncation Error? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Write. Models using segment sum can trigger a write out bounds / segmentation fault if the segment ids are not sorted. Code assumes that the segment ids are in increasing order, using the last element of the tensor holding them to determine the dimensionality of output tensor.This results in allocating insufficient memory for the output tensor and in a write outside the bounds of the output array.This usually results in a segmentation fault, but depending on runtime conditions it can provide for a write gadget to be used in future memory corruption-based exploits.e. How to fix Out-of-bounds Write? Upgrade |
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds. When determining the common dimension size of two tensors, TFLite uses a How to fix Out-of-Bounds? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. In eager mode, TensorFlow does not set the session state. Hence, calling How to fix NULL Pointer Dereference? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. The How to fix Heap-based Buffer Overflow? Upgrade |
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Write. In TensorFlow Lite models using segment sum can trigger writes outside of bounds of heap allocated buffers by inserting negative elements in the segment ids tensor. Users having access to This might result in a segmentation fault but it can also be used to further corrupt the memory and can be chained with other vulnerabilities to create more advanced exploits. How to fix Out-of-bounds Write? Upgrade |
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds. When determining the common dimension size of two tensors, TFLite uses a Since the function always returns the dimension of the first tensor, malicious attackers can craft cases where this is larger than that of the second tensor. In turn, this would result in reads/writes outside of bounds since the interpreter will wrongly assume that there is enough data in both tensors. . How to fix Out-of-Bounds? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read. To mimic Python's indexing with negative values, TFLite uses How to fix Out-of-bounds Read? Upgrade |
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Externally-Controlled Format String. By controlling the How to fix Externally-Controlled Format String? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. If a user passes an invalid argument to How to fix NULL Pointer Dereference? Upgrade |
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. The How to fix Improper Input Validation? Upgrade |
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Improper Input Validation. The How to fix Improper Input Validation? Upgrade |
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. The This vulnerability is a variant of CVE-2020-15201. How to fix Heap-based Buffer Overflow? Upgrade |
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. The How to fix Heap-based Buffer Overflow? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). Changing the TensorFlow's How to fix Denial of Service (DoS)? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Uninitialized Memory Exposure. If a user passes a list of strings to How to fix Uninitialized Memory Exposure? Upgrade |
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|
tensorflow is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). The How to fix Denial of Service (DoS)? Upgrade |
[,1.15.4)
[2.0.0,2.0.3)
[2.1.0,2.1.2)
[2.2.0,2.2.1)
[2.3.0,2.3.1)
|