BIT-tensorflow-2021-37644

See a problem?
Import Source
https://github.com/bitnami/vulndb/tree/main/data/tensorflow/BIT-tensorflow-2021-37644.json
JSON Data
https://api.osv.dev/v1/vulns/BIT-tensorflow-2021-37644
Aliases
Published
2024-03-06T11:17:41.750Z
Modified
2024-03-06T11:25:28.861Z
Summary
[none]
Details

TensorFlow is an end-to-end open source platform for machine learning. In affected versions providing a negative element to num_elements list argument of tf.raw_ops.TensorListReserve causes the runtime to abort the process due to reallocating a std::vector to have a negative number of elements. The implementation calls std::vector.resize() with the new size controlled by input given by the user, without checking that this input is valid. We have patched the issue in GitHub commit 8a6e874437670045e6c7dc6154c7412b4a2135e2. The fix will be included in TensorFlow 2.6.0. We will also cherrypick this commit on TensorFlow 2.5.1, TensorFlow 2.4.3, and TensorFlow 2.3.4, as these are also affected and still in supported range.

References

Affected packages

Bitnami / tensorflow

Package

Name
tensorflow
Purl
pkg:bitnami/tensorflow

Severity

  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator

Affected ranges

Type
SEMVER
Events
Introduced
2.3.0
Fixed
2.3.4
Introduced
2.4.0
Fixed
2.4.3
Type
SEMVER
Events
Introduced
2.5.0
Last affected
2.5.0
Introduced
2.6.0-rc0
Last affected
2.6.0-rc0
Introduced
2.6.0-rc1
Last affected
2.6.0-rc1
Introduced
2.6.0-rc2
Last affected
2.6.0-rc2