Vulnerability index

Browse CVEs

155 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness NULL Pointer DereferenceCWE-476 × clear
Tensorflow MEDIUM 6.5
CVE-2022-21739

Tensorflow is an Open Source Machine Learning Framework. The implementation of `QuantizedMaxPool` has an undefined behavior where user controlled inp…

Fix: after 2.6.2
Fix from $1,600 2022-02-03
Tensorflow MEDIUM 6.5
CVE-2022-21736

Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseTensorSliceDataset` has an undefined behavior: under certain co…

Fix: after 2.6.2
Fix from $1,600 2022-02-03
Android HIGH 7.5
CVE-2021-1022

In btif_in_hf_client_generic_evt of btif_hf_client.cc, there is a possible Bluetooth service crash due to a missing null check. This could lead to re…

Mitigation only
Fix from $1,950 2021-12-15
Tensorflow HIGH 7.8
CVE-2021-41208

TensorFlow is an open source platform for machine learning. In affected versions the code for boosted trees in TensorFlow is still missing validation…

Fix: 2.4.4 / 2.5.2+
Fix from $1,950 2021-11-05
Tensorflow MEDIUM 5.5
CVE-2021-41215

TensorFlow is an open source platform for machine learning. In affected versions the shape inference code for `DeserializeSparse` can trigger a null …

Fix: 2.4.4 / 2.5.2+
Fix from $1,600 2021-11-05
Tensorflow MEDIUM 5.5
CVE-2021-41217

TensorFlow is an open source platform for machine learning. In affected versions the process of building the control flow graph for a TensorFlow mode…

Fix: 2.4.4 / 2.5.2+
Fix from $1,600 2021-11-05
Android MEDIUM 5.5
CVE-2021-25462

NULL pointer dereference vulnerability in NPU driver prior to SMR Sep-2021 Release 1 allows attackers to cause memory corruption.

Mitigation only
Fix from $1,600 2021-09-09
Android MEDIUM 5.5
CVE-2021-25458

NULL pointer dereference vulnerability in ION driver prior to SMR Sep-2021 Release 1 allows attackers to cause memory corruption.

Mitigation only
Fix from $1,600 2021-09-09
Tensorflow MEDIUM 5.5
CVE-2021-37688

TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can craft a TFLite model that would trigger a…

Fix: 2.3.4 / 2.4.3+
Fix from $1,600 2021-08-12
Tensorflow MEDIUM 5.5
CVE-2021-37689

TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can craft a TFLite model that would trigger a…

Fix: 2.3.4 / 2.4.3+
Fix from $1,600 2021-08-12
Tensorflow HIGH 7.8
CVE-2021-37648

TensorFlow is an end-to-end open source platform for machine learning. In affected versions the code for `tf.raw_ops.SaveV2` does not properly valida…

Fix: 2.3.4 / 2.4.3+
Fix from $1,950 2021-08-12
Tensorflow HIGH 7.8
CVE-2021-37681

TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation of SVDF in TFLite is [vulnerable to a …

Fix: 2.3.4 / 2.4.3+
Fix from $1,950 2021-08-12
Tensorflow HIGH 7.8
CVE-2021-37659

TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can cause undefined behavior via binding a re…

Fix: 2.3.4 / 2.4.3+
Fix from $1,950 2021-08-12
Tensorflow MEDIUM 5.5
CVE-2021-37649

TensorFlow is an end-to-end open source platform for machine learning. The code for `tf.raw_ops.UncompressElement` can be made to trigger a null poin…

Fix: 2.3.4 / 2.4.3+
Fix from $1,600 2021-08-12
Tensorflow HIGH 7.8
CVE-2021-37638

TensorFlow is an end-to-end open source platform for machine learning. Sending invalid argument for `row_partition_types` of `tf.raw_ops.RaggedTensor…

Fix: 2.3.4 / 2.4.3+
Fix from $1,950 2021-08-12
Tensorflow HIGH 7.8
CVE-2021-37639

TensorFlow is an end-to-end open source platform for machine learning. When restoring tensors via raw APIs, if the tensor name is not provided, Tenso…

Fix: 2.3.4 / 2.4.3+
Fix from $1,950 2021-08-12
Tensorflow HIGH 7.1
CVE-2021-37643

TensorFlow is an end-to-end open source platform for machine learning. If a user does not provide a valid padding value to `tf.raw_ops.MatrixDiagPart…

Fix: 2.3.4 / 2.4.3+
Fix from $1,950 2021-08-12
Tensorflow MEDIUM 5.5
CVE-2021-37637

TensorFlow is an end-to-end open source platform for machine learning. It is possible to trigger a null pointer dereference in TensorFlow by passing …

Fix: 2.3.4 / 2.4.3+
Fix from $1,600 2021-08-12
Tensorflow MEDIUM 5.5
CVE-2021-37647

TensorFlow is an end-to-end open source platform for machine learning. When a user does not supply arguments that determine a valid sparse tensor, `t…

Fix: 2.3.4 / 2.4.3+
Fix from $1,600 2021-08-12
Android HIGH 7.5
CVE-2021-0555

In RenderStruct of protostream_objectsource.cc, there is a possible crash due to a missing null check. This could lead to remote denial of service wi…

Mitigation only
Fix from $1,950 2021-06-22
Tensorflow HIGH 7.8
CVE-2021-29616

TensorFlow is an end-to-end open source platform for machine learning. The implementation of TrySimplify(https://github.com/tensorflow/tensorflow/blo…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29592

TensorFlow is an end-to-end open source platform for machine learning. The fix for CVE-2020-15209(https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29609

TensorFlow is an end-to-end open source platform for machine learning. Incomplete validation in `SparseAdd` results in allowing attackers to exploit …

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29574

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.MaxPool3DGradGrad` exhibits undefined behavi…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29583

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.FusedBatchNorm` is vulnerable to a heap buff…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow HIGH 7.8
CVE-2021-29568

TensorFlow is an end-to-end open source platform for machine learning. An attacker can trigger undefined behavior by binding to null pointer in `tf.r…

Fix: 2.1.4 / 2.2.3+
Fix from $1,950 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29564

TensorFlow is an end-to-end open source platform for machine learning. An attacker can trigger a null pointer dereference in the implementation of `t…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29565

TensorFlow is an end-to-end open source platform for machine learning. An attacker can trigger a null pointer dereference in the implementation of `t…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29572

TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.raw_ops.SdcaOptimizer` triggers undefined behavior d…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14
Tensorflow MEDIUM 5.5
CVE-2021-29541

TensorFlow is an end-to-end open source platform for machine learning. An attacker can trigger a dereference of a null pointer in `tf.raw_ops.StringN…

Fix: 2.1.4 / 2.2.3+
Fix from $1,600 2021-05-14