2.19.0
5 years ago
1 months ago
Known vulnerabilities in the tensorflow-cpu package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow or Wraparound due to the How to fix Integer Overflow or Wraparound? Upgrade | [,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a malicious invalid input with zero dimension, which crashes a TensorFlow model (Check Failed). Note: An attacker must have privilege to provide input to a How to fix Denial of Service (DoS)? Upgrade | [,2.11.1) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Heap-based Buffer Overflow. Attackers can access heap memory which is not in the control of user, leading to a crash or remote code execution. The fix will be included in TensorFlow version 2.12.0 and will also cherrypick this commit on TensorFlow version 2.11.1. How to fix Heap-based Buffer Overflow? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference when How to fix NULL Pointer Dereference? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) when running with XLA, How to fix Denial of Service (DoS)? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference due to a null pointer error in How to fix NULL Pointer Dereference? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a floating point exception in How to fix Denial of Service (DoS)? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. The function How to fix NULL Pointer Dereference? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Incorrect Comparison. Constructing a How to fix Incorrect Comparison? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). When running with XLA, How to fix Denial of Service (DoS)? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Buffer Overflow in How to fix Buffer Overflow? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow to Buffer Overflow when How to fix Integer Overflow to Buffer Overflow? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Integer Overflow or Wraparound in How to fix Integer Overflow or Wraparound? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Out-of-Bounds due to mismatched integer type sizes in How to fix Out-of-Bounds? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a floating point exception if the stride and window size are not positive for How to fix Denial of Service (DoS)? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference. When How to fix NULL Pointer Dereference? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS). When the parameter How to fix Denial of Service (DoS)? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Double Free. The How to fix Double Free? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to NULL Pointer Dereference in How to fix NULL Pointer Dereference? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Denial of Service (DoS) due to a floating point exception in How to fix Denial of Service (DoS)? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read if the parameter How to fix Out-of-bounds Read? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |
tensorflow-cpu is a machine learning framework. Affected versions of this package are vulnerable to Out-of-bounds Read in How to fix Out-of-bounds Read? Upgrade | [,2.11.1)[2.12.0rc0,2.12.0) |