TensorFlow is an open source machine learning platform. When running versions prior to 2.12.0 and 2.11.1 with XLA, tf.raw_ops.Bincount segfaults when given a parameter weights that is neither the same shape as parameter arr nor a length-0 tensor. A fix is included in TensorFlow 2.12.0 and 2.11.1.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/25xxx/CVE-2023-25675.json",
"cwe_ids": [
"CWE-697"
],
"cna_assigner": "GitHub_M"
}{
"cpe": "cpe:2.3:a:google:tensorflow:*:*:*:*:*:*:*:*",
"source": [
"CPE_FIELD",
"REFERENCES"
],
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "2.12.0"
}
]
}"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-25675.json"
"2026-04-12T07:26:19Z"
[
{
"deprecated": false,
"signature_type": "Line",
"digest": {
"line_hashes": [
"242027763366298094047660725516325714023",
"152785620091620274401307333347219048178",
"120799032955436800380706164124356166823",
"190475755004857829226931228128435588474",
"180936455604696099216601325306032838510",
"118551250891472062310427257569379957499",
"307700148558523106205223078884110077365",
"185017979393050644193309163346417050662",
"50011808617148990642852241789543674120",
"156067805253237662427722155868249838492",
"229854177500984408570493555099948006211",
"35453925397283456210190796296912600732",
"336188462572227092151848793838862799059",
"229672366032664480769490552676141672533",
"295840847855653179966464078194000306799",
"148480013757590362408937349113917548617",
"315970715266605205759711213551038826254",
"201779765488935691776620746815524971211",
"311326478900460572922868988119634195658",
"212840902337872097124856076638399993016",
"85317604966310383413835163627545142565",
"327937081263066039170637135649065715033",
"126900735904436295481952105488890092090"
],
"threshold": 0.9
},
"target": {
"file": "tensorflow/compiler/tf2xla/kernels/bincount_op.cc"
},
"source": "https://github.com/tensorflow/tensorflow/commit/8ae76cf085f4be26295d2ecf2081e759e04b8acf",
"signature_version": "v1",
"id": "CVE-2023-25675-a66e13f4"
}
]