Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2022-23561 Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would cause a write outside of bounds of an array … Tensorflow after 2.6.2 Fix from $1,9502022-02-04 HIGH 8.8 CVE-2022-23562 Tensorflow is an Open Source Machine Learning Framework. The implementation of `Range` suffers from integer overflows. These can trigger undefined be… Tensorflow after 2.6.2 Fix from $1,9502022-02-04 MEDIUM 6.5 CVE-2022-23557 Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would trigger a division by zero in `BiasAndClamp`… Tensorflow after 2.6.2 Fix from $1,6002022-02-04 MEDIUM 6.5 CVE-2022-23564 Tensorflow is an Open Source Machine Learning Framework. When decoding a resource handle tensor from protobuf, a TensorFlow process can encounter cas… Tensorflow after 2.6.2 Fix from $1,6002022-02-04 MEDIUM 6.3 CVE-2022-23563 Tensorflow is an Open Source Machine Learning Framework. In multiple places, TensorFlow uses `tempfile.mktemp` to create temporary files. While this … Tensorflow after 2.6.2 Fix from $1,6002022-02-04 HIGH 8.8 CVE-2022-21740 Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseCountSparseOutput` is vulnerable to a heap overflow. The fix wi… Tensorflow after 2.6.2 Fix from $1,9502022-02-03 MEDIUM 6.5 CVE-2022-21741 Tensorflow is an Open Source Machine Learning Framework. ### Impact An attacker can craft a TFLite model that would trigger a division by zero in the… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-21737 Tensorflow is an Open Source Machine Learning Framework. The implementation of `*Bincount` operations allows malicious users to cause denial of servi… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-21738 Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseCountSparseOutput` can be made to crash a TensorFlow process by… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-21739 Tensorflow is an Open Source Machine Learning Framework. The implementation of `QuantizedMaxPool` has an undefined behavior where user controlled inp… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-21734 Tensorflow is an Open Source Machine Learning Framework. The implementation of `MapStage` is vulnerable a `CHECK`-fail if the key tensor is not a sca… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-21735 Tensorflow is an Open Source Machine Learning Framework. The implementation of `FractionalMaxPool` can be made to crash a TensorFlow process via a di… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-23569 Tensorflow is an Open Source Machine Learning Framework. Multiple operations in TensorFlow can be used to trigger a denial of service via `CHECK`-fai… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-21725 Tensorflow is an Open Source Machine Learning Framework. The estimator for the cost of some convolution operations can be made to execute a division … Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-21729 Tensorflow is an Open Source Machine Learning Framework. The implementation of `UnravelIndex` is vulnerable to a division by zero caused by an intege… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-21736 Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseTensorSliceDataset` has an undefined behavior: under certain co… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-23567 Tensorflow is an Open Source Machine Learning Framework. The implementations of `Sparse*Cwise*` ops are vulnerable to integer overflows. These can be… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-23568 Tensorflow is an Open Source Machine Learning Framework. The implementation of `AddManySparseToTensorsMap` is vulnerable to an integer overflow which… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-21731 Tensorflow is an Open Source Machine Learning Framework. The implementation of shape inference for `ConcatV2` can be used to trigger a denial of serv… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-21732 Tensorflow is an Open Source Machine Learning Framework. The implementation of `ThreadPoolHandle` can be used to trigger a denial of service attack b… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 MEDIUM 6.5 CVE-2022-21733 Tensorflow is an Open Source Machine Learning Framework. The implementation of `StringNGrams` can be used to trigger a denial of service attack by ca… Tensorflow after 2.6.2 Fix from $1,6002022-02-03 HIGH 8.1 CVE-2022-21728 Tensorflow is an Open Source Machine Learning Framework. The implementation of shape inference for `ReverseSequence` does not fully validate the valu… Tensorflow after 2.6.2 Fix from $1,9502022-02-03 HIGH 8.1 CVE-2022-21730 Tensorflow is an Open Source Machine Learning Framework. The implementation of `FractionalAvgPoolGrad` does not consider cases where the input tensor… Tensorflow after 2.6.2 Fix from $1,9502022-02-03 HIGH 8.8 CVE-2022-21726 Tensorflow is an Open Source Machine Learning Framework. The implementation of `Dequantize` does not fully validate the value of `axis` and can resul… Tensorflow after 2.6.2 Fix from $1,9502022-02-03 HIGH 8.8 CVE-2022-21727 Tensorflow is an Open Source Machine Learning Framework. The implementation of shape inference for `Dequantize` is vulnerable to an integer overflow … Tensorflow after 2.6.2 Fix from $1,9502022-02-03 MEDIUM 6.1 CVE-2022-23728 Attacker can reset the device with AT Command in the process of rebooting the device. The LG ID is LVE-SMP-210011. Android 11.0+ Fix from $1,6002022-01-21 CRITICAL 9.8 CVE-2021-22566 An incorrect setting of UXN bits within mmu_flags_to_s1_pte_attr lead to privileged executable pages being mapped as executable from an unprivileged … Fuchsia Patch available Fix from $2,3002022-01-18 HIGH 7.8 CVE-2021-39630 In executeRequest of OverlayManagerService.java, there is a possible way to control fabricated overlays from adb shell due to a permissions bypass. T… Android Mitigation only Fix from $1,9502022-01-14 HIGH 7.8 CVE-2021-39632 In inotify_cb of events.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privile… Android Mitigation only Fix from $1,9502022-01-14 HIGH 7.8 CVE-2021-39634 In fs/eventpoll.c, there is a possible use after free. This could lead to local escalation of privilege with no additional execution privileges neede… Android Patch available Fix from $1,9502022-01-14