github.com/testerSunshine/12306
Submitted 8/4/2026, 10:28:00 AM · Status: ok
Risk grade
F
100 / 100
Findings
1620
8 critical224 high1003 medium200 low185 info0 on CISA KEV0ATT&CK
Showing 1,620 of 1,620 findings
Findings
- Incomplete validation in boosted trees codegrypeCVE-2021-41208EPSS 0.2%
- Keras code injection vulnerabilitygrypeCVE-2024-3660EPSS 1.8%
- NULL Pointer Dereference and Access of Uninitialized Pointer in TensorFlowgrype
- TensorFlow has a heap out-of-buffer read vulnerability in the QuantizeAndDequantize operationgrypeCVE-2023-25668EPSS 0.8%
- A arbitrary code injection vulnerability in TensorFlow's Keras framewo ...A arbitrary code injection vulnerability in TensorFlow's Keras framework (<2.13) allows attackers to execute arbitrary code with the same permissions as the application using a model that allow arbitrary code irrespective of the application.trivyCVE-2024-3660
- CVE-2023-25668 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. Attackers using Tensorflow prior to 2.12.0 or 2.11.1 can access heap memory which is not in the control of user, leading to a crash or remote code execution. The fix will be included in TensorFlow version 2.12.0 and will…trivyCVE-2023-25668
- Incomplete validation in boosted trees codeTensorFlow is an open source platform for machine learning. In affected versions the code for boosted trees in TensorFlow is still missing validation. As a result, attackers can trigger denial of service (via dereferencing `nullptr`s or via `CHECK`-failures) as well as abuse unde…trivyCVE-2021-41208
- NULL Pointer Dereference and Access of Uninitialized Pointer in TensorFlow### Impact The [code for boosted trees in TensorFlow](https://github.com/tensorflow/tensorflow/blob/e0b6e58c328059829c3eb968136f17aa72b6c876/tensorflow/core/kernels/boosted_trees/stats_ops.cc) is still missing validation. This allows malicious users to read and write outside of …trivy
- Detected generic-api-key: Detected a Generic API Key, potentially exposing access to various services and sensitive operationsDetected a Generic API Key, potentially exposing access to various services and sensitive operations.gitleaks
- `CHECK`-fails when building invalid tensor shapes in TensorflowgrypeCVE-2022-23569EPSS 0.5%
- `CHECK`-failures in TensorflowgrypeCVE-2022-21734EPSS 0.8%
- `CHECK`-failures in TensorflowgrypeCVE-2022-23565EPSS 0.5%
- Access to invalid memory during shape inference in `Cudnn*` opsgrypeCVE-2021-41221EPSS 0.2%
- Arbitrary code execution due to YAML deserializationgrypeCVE-2021-37678EPSS 0.4%
- Assertion failure based denial of service in TensorflowgrypeCVE-2022-21737EPSS 0.8%
- Buffer overflow in `CONV_3D_TRANSPOSE` on TFLitegrypeCVE-2022-41894EPSS 0.5%
- Code injection in `saved_model_cli` in TensorFlowgrypeCVE-2022-29216EPSS 0.5%
- Crash when type cannot be specialized in TensorflowgrypeCVE-2022-23572EPSS 1.0%
- Data corruption in tensorflow-litegrypeCVE-2020-15208EPSS 0.9%
- Denial of Service in TensorflowgrypeCVE-2020-15206EPSS 1.0%
- Denial of Service in TensorflowgrypeCVE-2020-15203EPSS 1.0%
- Division by zero in TensorflowgrypeCVE-2022-21735EPSS 0.8%
- Division by zero in TFLitegrypeCVE-2022-23557EPSS 0.8%
- Division by zero in TFLitegrypeCVE-2022-21741EPSS 0.8%
- FractionalMaxPool and FractionalAVGPool heap out-of-bounds acessgrypeCVE-2022-41900EPSS 0.6%
- Heap buffer overflow in `FractionalAvgPoolGrad`grypeCVE-2021-37651EPSS 0.2%
- Heap OOB and CHECK fail in `ResourceGather`grypeCVE-2021-37654EPSS 0.2%
- Heap OOB in `ResourceScatterUpdate`grypeCVE-2021-37655EPSS 0.2%
- Heap OOB in boosted treesgrypeCVE-2021-37664EPSS 0.2%
- Heap OOB in nested `tf.map_fn` with `RaggedTensor`sgrypeCVE-2021-37679EPSS 0.2%
- Heap OOB read in `tf.ragged.cross`grypeCVE-2021-41212EPSS 0.2%
- Heap OOB read in `tf.raw_ops.SparseCountSparseOutput`grypeCVE-2021-41210EPSS 0.1%
- Heap out of bounds access in sparse reduction operationsgrypeCVE-2021-37635EPSS 0.2%
- Heap overflow in TensorflowgrypeCVE-2022-21740EPSS 0.8%
- Improper Validation of Integrity Check Value in TensorFlowgrype
- Incomplete validation in `QuantizeV2`grypeCVE-2021-37663EPSS 0.2%
- Incomplete validation in MKL requantizationgrypeCVE-2021-37665EPSS 0.2%
- Incomplete validation of shapes in multiple TF opsgrypeCVE-2021-41206EPSS 0.2%
- Incorrect validation of `SaveV2` inputsgrypeCVE-2021-37648EPSS 0.2%
- Insecure temporary file in TensorflowgrypeCVE-2022-23563EPSS 0.1%
- Insufficiently Protected Credentials in RequestsgrypeCVE-2018-18074EPSS 7.4%
- Integer overflow in TensorflowgrypeCVE-2022-23575EPSS 0.8%
- Integer overflow in TensorflowgrypeCVE-2022-23576EPSS 0.8%
- Integer overflow in TensorflowgrypeCVE-2022-23562EPSS 0.6%
- Integer overflow in TensorflowgrypeCVE-2022-21727EPSS 0.7%
- Integer overflow in TensorFlowgrypeCVE-2022-23587EPSS 0.9%
- Integer overflow in TFLitegrypeCVE-2022-23559EPSS 1.2%
- Integer overflow in TFLite array creationgrypeCVE-2022-23558EPSS 0.8%
- Integer overflow leading to crash in TensorflowgrypeCVE-2022-21738EPSS 0.8%
- Integer overflows in TensorflowgrypeCVE-2022-23568EPSS 0.8%
- Integer overflows in TensorflowgrypeCVE-2022-23567EPSS 1.1%
- Integer truncation in Shard API usagegrypeCVE-2020-15202EPSS 1.3%
- Keras Directory Traversal VulnerabilitygrypeCVE-2025-12060EPSS 0.6%
- Keras has an untrusted deserialization vulnerabilitygrypeCVE-2026-1462EPSS 0.4%
- Keras is vulnerable to Deserialization of Untrusted DatagrypeCVE-2025-9906EPSS 0.2%
- Missing validation during checkpoint loadinggrypeCVE-2021-41203EPSS 0.2%
- NPE in TFLitegrypeCVE-2021-37681EPSS 0.2%
- Null pointer dereference and heap OOB read in operations restoring tensorsgrypeCVE-2021-37639EPSS 0.2%
- Null pointer dereference in `CompressElement`grypeCVE-2021-37637EPSS 0.2%
- Null pointer dereference in `MatrixDiagPartOp`grypeCVE-2021-37643EPSS 0.2%
- Null pointer dereference in `RaggedTensorToTensor`grypeCVE-2021-37638EPSS 0.2%
- Null pointer dereference in `SparseTensorSliceDataset`grypeCVE-2021-37647EPSS 0.2%
- Null pointer dereference in `UncompressElement`grypeCVE-2021-37649EPSS 0.2%
- Null pointer dereference in TensorFlowgrypeCVE-2022-21739EPSS 0.8%
- Null pointer dereference in tensorflow-litegrypeCVE-2020-15209EPSS 0.8%
- Null pointer dereference in TFLitegrypeCVE-2021-37688EPSS 0.2%
- Null pointer dereference in TFLite MLIR optimizationsgrypeCVE-2021-37689EPSS 0.2%
- Null-dereference in TensorflowgrypeCVE-2022-23570EPSS 1.0%
- Null-dereference in TensorflowgrypeCVE-2022-23577EPSS 0.8%
- Out of bounds read and write in TensorflowgrypeCVE-2022-23574EPSS 0.8%
- Out of bounds read in TensorflowgrypeCVE-2022-21726EPSS 0.8%
- Out of bounds read in TensorflowgrypeCVE-2022-21730EPSS 0.8%
- Out of bounds read in TensorflowgrypeCVE-2022-21728EPSS 1.1%
- Out of bounds write in grappler in TensorflowgrypeCVE-2022-41902EPSS 0.4%
- Out of bounds write in TensorflowgrypeCVE-2022-23566EPSS 0.9%
- Out of bounds write in TFLitegrypeCVE-2022-23561EPSS 0.5%
- Overflow and uncaught divide by zero in TensorflowgrypeCVE-2022-21729EPSS 0.8%
- Reachable Assertion in TensorflowgrypeCVE-2022-23564EPSS 0.5%
- Reachable Assertion in TensorflowgrypeCVE-2022-23571EPSS 0.5%
- Read and Write outside of bounds in TensorFlowgrypeCVE-2022-23560EPSS 0.8%
- Reference binding to `nullptr` in `tf.ragged.cross`grypeCVE-2021-41214EPSS 0.2%
- Reference binding to nullptr and heap OOB in binary cwise opsgrypeCVE-2021-37659EPSS 0.2%
- Reference binding to nullptr in `RaggedTensorToVariant`grypeCVE-2021-37666EPSS 0.2%
- Reference binding to nullptr in map operationsgrypeCVE-2021-37671EPSS 0.2%
- Reference binding to nullptr in shape inferencegrypeCVE-2021-37676EPSS 0.2%
- Reference binding to nullptr in unicode encodinggrypeCVE-2021-37667EPSS 0.2%
- Segfault and heap buffer overflow in `{Experimental,}DatasetToTFRecord`grypeCVE-2021-37650EPSS 0.2%
- Segfault and OOB write due to incomplete validation in `EditDistance` in TensorFlowgrypeCVE-2022-29208EPSS 0.4%
- Segfault in `tf.quantization.quantize_and_dequantize`grypeCVE-2020-15265EPSS 0.9%
- Segmentation fault in tensorflow-litegrypeCVE-2020-15210EPSS 0.7%
- Stack overflow due to looping TFLite subgraphgrypeCVE-2021-29591EPSS 0.3%
- Stack overflow in TensorFlowgrypeCVE-2022-23591EPSS 0.8%
- TensorFlow has double free in Fractional(Max/Avg)PoolgrypeCVE-2023-25801EPSS 0.1%
- TensorFlow has Floating Point Exception in AudioSpectrogramgrypeCVE-2023-25666EPSS 0.4%
- TensorFlow has Floating Point Exception in AvgPoolGrad with XLAgrypeCVE-2023-25669EPSS 0.4%
- TensorFlow has Floating Point Exception in TensorListSplit with XLAgrypeCVE-2023-25673EPSS 0.4%
- TensorFlow has Floating Point Exception in TFLite in conv kernelgrypeCVE-2023-27579EPSS 0.4%
- TensorFlow has Heap-buffer-overflow in AvgPoolGradgrypeCVE-2023-25664EPSS 0.4%
- TensorFlow has null dereference on ParallelConcat with XLAgrypeCVE-2023-25676EPSS 0.4%
- TensorFlow has Null Pointer Error in LookupTableImportV2grypeCVE-2023-25672EPSS 0.4%
- TensorFlow has Null Pointer Error in QuantizedMatMulWithBiasAndDequantizegrypeCVE-2023-25670EPSS 0.4%
- TensorFlow has Null Pointer Error in RandomShuffle with XLA enablegrypeCVE-2023-25674EPSS 0.4%
- TensorFlow has Null Pointer Error in SparseSparseMaximumgrypeCVE-2023-25665EPSS 0.4%
- TensorFlow has Null Pointer Error in TensorArrayConcatV2grypeCVE-2023-25663EPSS 0.4%
- TensorFlow has segfault in array_ops.upper_boundgrypeCVE-2023-33976EPSS 0.4%
- TensorFlow has Segfault in Bincount with XLAgrypeCVE-2023-25675EPSS 0.4%
- TensorFlow has segmentation fault in tfg-translategrypeCVE-2023-25671EPSS 0.5%
- TensorFlow vulnerable to integer overflow in EditDistancegrypeCVE-2023-25662EPSS 0.4%
- TensorFlow vulnerable to OOB read in `Gather_nd` in TF LitegrypeCVE-2022-35937EPSS 0.5%
- TensorFlow vulnerable to OOB write in `scatter_nd` in TF LitegrypeCVE-2022-35939EPSS 0.5%
- TensorFlow vulnerable to Out-of-Bounds Read in DynamicStitchgrypeCVE-2023-25659EPSS 0.4%
- TensorFlow vulnerable to Out-of-Bounds Read in GRUBlockCellGradgrypeCVE-2023-25658EPSS 0.4%
- TensorFlow vulnerable to seg fault in `tf.raw_ops.Print`grypeCVE-2023-25660EPSS 0.4%
- Type confusion leading to segfault in TensorflowgrypeCVE-2022-21731EPSS 0.9%
- Undefined behavior in `SparseTensorSliceDataset`grypeCVE-2022-21736EPSS 0.8%
- Undefined behavior via `nullptr` reference binding in sparse matrix multiplicationgrypeCVE-2021-41219EPSS 0.2%
- Uninitialized variable access in TensorflowgrypeCVE-2022-23573EPSS 0.8%
- Unitialized access in `EinsumHelper::ParseEquation`grypeCVE-2021-41201EPSS 0.2%
- Use after free in `DecodePng` kernelgrypeCVE-2022-23584EPSS 0.7%
- Use after free in boosted trees creationgrypeCVE-2021-37652EPSS 0.2%
- `CHECK`-fails when building invalid tensor shapes in TensorflowTensorflow is an Open Source Machine Learning Framework. Multiple operations in TensorFlow can be used to trigger a denial of service via `CHECK`-fails (i.e., assertion failures). This is similar to TFSA-2021-198 and has similar fixes. We have patched the reported issues in multi…trivyCVE-2022-23569
- `CHECK`-failures in TensorflowTensorflow is an Open Source Machine Learning Framework. An attacker can trigger denial of service via assertion failure by altering a `SavedModel` on disk such that `AttrDef`s of some operation are duplicated. The fix will be included in TensorFlow 2.8.0. We will also cherrypick…trivyCVE-2022-23565
- `CHECK`-failures in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `MapStage` is vulnerable a `CHECK`-fail if the key tensor is not a scalar. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and T…trivyCVE-2022-21734
- Access to invalid memory during shape inference in `Cudnn*` opsTensorFlow is an open source platform for machine learning. In affected versions the shape inference code for the `Cudnn*` operations in TensorFlow can be tricked into accessing invalid memory, via a heap buffer overflow. This occurs because the ranks of the `input`, `input_h` an…trivyCVE-2021-41221
- Arbitrary code execution due to YAML deserializationTensorFlow is an end-to-end open source platform for machine learning. In affected versions TensorFlow and Keras can be tricked to perform arbitrary code execution when deserializing a Keras model from YAML format. The [implementation](https://github.com/tensorflow/tensorflow/blo…trivyCVE-2021-37678
- Assertion failure based denial of service in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `*Bincount` operations allows malicious users to cause denial of service by passing in arguments which would trigger a `CHECK`-fail. There are several conditions that the input arguments must satisfy. …trivyCVE-2022-21737
- Code injection in `saved_model_cli` in TensorFlowTensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, TensorFlow's `saved_model_cli` tool is vulnerable to a code injection. This can be used to open a reverse shell. This code path was maintained for compatibility reasons a…trivyCVE-2022-29216
- Crash when type cannot be specialized in TensorflowTensorflow is an Open Source Machine Learning Framework. Under certain scenarios, TensorFlow can fail to specialize a type during shape inference. This case is covered by the `DCHECK` function however, `DCHECK` is a no-op in production builds and an assertion failure in debug bui…trivyCVE-2022-23572
- CVE-2022-41894 affecting package tensorflow for versions less than 2.11.0-1TensorFlow is an open source platform for machine learning. The reference kernel of the `CONV_3D_TRANSPOSE` TensorFlow Lite operator wrongly increments the data_ptr when adding the bias to the result. Instead of `data_ptr += num_channels;` it should be `data_ptr += output_num_cha…trivyCVE-2022-41894
- CVE-2022-41900 affecting package tensorflow for versions less than 2.11.0-1TensorFlow is an open source platform for machine learning. The security vulnerability results in FractionalMax(AVG)Pool with illegal pooling_ratio. Attackers using Tensorflow can exploit the vulnerability. They can access heap memory which is not in the control of user, leading …trivyCVE-2022-41900
- CVE-2023-25658 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, an out of bounds read is in GRUBlockCellGrad. A fix is included in TensorFlow 2.12.0 and 2.11.1.trivyCVE-2023-25658
- CVE-2023-25659 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, if the parameter `indices` for `DynamicStitch` does not match the shape of the parameter `data`, it can trigger an stack OOB read. A fix is included in TensorFlow version 2.12.0 and v…trivyCVE-2023-25659
- CVE-2023-25660 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, when the parameter `summarize` of `tf.raw_ops.Print` is zero, the new method `SummarizeArray<bool>` will reference to a nullptr, leading to a seg fault. A fix is included in TensorFlo…trivyCVE-2023-25660
- CVE-2023-25662 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. Versions prior to 2.12.0 and 2.11.1 are vulnerable to integer overflow in EditDistance. A fix is included in TensorFlow version 2.12.0 and version 2.11.1.trivyCVE-2023-25662
- CVE-2023-25663 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, when `ctx->step_containter()` is a null ptr, the Lookup function will be executed with a null pointer. A fix is included in TensorFlow 2.12.0 and 2.11.1.trivyCVE-2023-25663
- CVE-2023-25664 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, there is a heap buffer overflow in TAvgPoolGrad. A fix is included in TensorFlow 2.12.0 and 2.11.1.trivyCVE-2023-25664
- CVE-2023-25665 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, when `SparseSparseMaximum` is given invalid sparse tensors as inputs, it can give a null pointer error. A fix is included in TensorFlow version 2.12 and version 2.11.1.trivyCVE-2023-25665
- CVE-2023-25666 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, there is a floating point exception in AudioSpectrogram. A fix is included in TensorFlow version 2.12.0 and version 2.11.1.trivyCVE-2023-25666
- CVE-2023-25669 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, if the stride and window size are not positive for `tf.raw_ops.AvgPoolGrad`, it can give a floating point exception. A fix is included in TensorFlow version 2.12.0 and version 2.11.1.…trivyCVE-2023-25669
- CVE-2023-25670 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. Versions prior to 2.12.0 and 2.11.1 have a null point error in QuantizedMatMulWithBiasAndDequantize with MKL enabled. A fix is included in TensorFlow version 2.12.0 and version 2.11.1.trivyCVE-2023-25670
- CVE-2023-25671 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. There is out-of-bounds access due to mismatched integer type sizes. A fix is included in TensorFlow version 2.12.0 and version 2.11.1.trivyCVE-2023-25671
- CVE-2023-25672 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. The function `tf.raw_ops.LookupTableImportV2` cannot handle scalars in the `values` parameter and gives an NPE. A fix is included in TensorFlow version 2.12.0 and version 2.11.1.trivyCVE-2023-25672
- CVE-2023-25673 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source platform for machine learning. Versions prior to 2.12.0 and 2.11.1 have a Floating Point Exception in TensorListSplit with XLA. A fix is included in TensorFlow version 2.12.0 and version 2.11.1.trivyCVE-2023-25673
- CVE-2023-25674 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source machine learning platform. Versions prior to 2.12.0 and 2.11.1 have a null pointer error in RandomShuffle with XLA enabled. A fix is included in TensorFlow 2.12.0 and 2.11.1.trivyCVE-2023-25674
- CVE-2023-25675 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source machine learning platform. When running versions prior to 2.12.0 and 2.11.1 with XLA, `tf.raw_ops.Bincount` segfaults when given a parameter `weights` that is neither the same shape as parameter `arr` nor a length-0 tensor. A fix is included in Tensor…trivyCVE-2023-25675
- CVE-2023-25676 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source machine learning platform. When running versions prior to 2.12.0 and 2.11.1 with XLA, `tf.raw_ops.ParallelConcat` segfaults with a nullptr dereference when given a parameter `shape` with rank that is not greater than zero. A fix is available in Tensor…trivyCVE-2023-25676
- CVE-2023-25801 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an open source machine learning platform. Prior to versions 2.12.0 and 2.11.1, `nn_ops.fractional_avg_pool_v2` and `nn_ops.fractional_max_pool_v2` require the first and fourth elements of their parameter `pooling_ratio` to be equal to 1.0, as pooling on batch and ch…trivyCVE-2023-25801
- CVE-2023-27579 affecting package tensorflow for versions less than 2.11.1-1TensorFlow is an end-to-end open source platform for machine learning. Constructing a tflite model with a paramater `filter_input_channel` of less than 1 gives a FPE. This issue has been patched in version 2.12. TensorFlow will also cherrypick the fix commit on TensorFlow 2.11.1.…trivyCVE-2023-27579
- CVE-2023-33976 affecting package tensorflow for versions less than 2.11.1-2TensorFlow is an end-to-end open source platform for machine learning. `array_ops.upper_bound` causes a segfault when not given a rank 2 tensor. The fix will be included in TensorFlow 2.13 and will also cherrypick this commit on TensorFlow 2.12.trivyCVE-2023-33976
- Data corruption in tensorflow-liteIn tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, when determining the common dimension size of two tensors, TFLite uses a `DCHECK` which is no-op outside of debug compilation modes. Since the function always returns the dimension of the first tensor, mali…trivyCVE-2020-15208
- Denial of Service in TensorflowIn Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, changing the TensorFlow's `SavedModel` protocol buffer and altering the name of required keys results in segfaults and data corruption while loading the model. This can cause a denial of service in products usin…trivyCVE-2020-15206
- Denial of Service in TensorflowIn Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, by controlling the `fill` argument of tf.strings.as_string, a malicious attacker is able to trigger a format string vulnerability due to the way the internal format use in a `printf` call is constructed. This ma…trivyCVE-2020-15203
- Division by zero in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `FractionalMaxPool` can be made to crash a TensorFlow process via a division by 0. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.…trivyCVE-2022-21735
- Division by zero in TFLiteTensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would trigger a division by zero in `BiasAndClamp` implementation. There is no check that the `bias_size` is non zero. The fix will be included in TensorFlow 2.8.0. We will also che…trivyCVE-2022-23557
- Division by zero in TFLiteTensorflow is an Open Source Machine Learning Framework. ### Impact An attacker can craft a TFLite model that would trigger a division by zero in the implementation of depthwise convolutions. The parameters of the convolution can be user controlled and are also used within a divi…trivyCVE-2022-21741
- Heap buffer overflow in `FractionalAvgPoolGrad`TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation for `tf.raw_ops.FractionalAvgPoolGrad` can be tricked into accessing data outside of bounds of heap allocated buffers. The [implementation](https://github.com/tensorflow…trivyCVE-2021-37651
- Heap OOB and CHECK fail in `ResourceGather`TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can trigger a crash via a `CHECK`-fail in debug builds of TensorFlow using `tf.raw_ops.ResourceGather` or a read from outside the bounds of heap allocated data in the same API …trivyCVE-2021-37654
- Heap OOB in `ResourceScatterUpdate`TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can trigger a read from outside of bounds of heap allocated data by sending invalid arguments to `tf.raw_ops.ResourceScatterUpdate`. The [implementation](https://github.com/ten…trivyCVE-2021-37655
- Heap OOB in boosted treesTensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can read from outside of bounds of heap allocated data by sending specially crafted illegal arguments to `BoostedTreesSparseCalculateBestFeatureSplit`. The [implementation](htt…trivyCVE-2021-37664
- Heap OOB in nested `tf.map_fn` with `RaggedTensor`sTensorFlow is an end-to-end open source platform for machine learning. In affected versions it is possible to nest a `tf.map_fn` within another `tf.map_fn` call. However, if the input tensor is a `RaggedTensor` and there is no function signature provided, code assumes the output …trivyCVE-2021-37679
- Heap OOB read in `tf.ragged.cross`TensorFlow is an open source platform for machine learning. In affected versions the shape inference code for `tf.ragged.cross` can trigger a read outside of bounds of heap allocated array. The fix will be included in TensorFlow 2.7.0. We will also cherrypick this commit on Tenso…trivyCVE-2021-41212
- Heap OOB read in `tf.raw_ops.SparseCountSparseOutput`TensorFlow is an open source platform for machine learning. In affected versions the shape inference functions for `SparseCountSparseOutput` can trigger a read outside of bounds of heap allocated array. The fix will be included in TensorFlow 2.7.0. We will also cherrypick this co…trivyCVE-2021-41210
- Heap out of bounds access in sparse reduction operationsTensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation of sparse reduction operations in TensorFlow can trigger accesses outside of bounds of heap allocated data. The [implementation](https://github.com/tensorflow/tensorflow…trivyCVE-2021-37635
- Heap overflow in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `SparseCountSparseOutput` is vulnerable to a heap overflow. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3…trivyCVE-2022-21740
- Image user should not be 'root'Running containers with 'root' user can lead to a container escape situation. It is a best practice to run containers as non-root users, which can be done by adding a 'USER' statement to the Dockerfile.trivyDockerfile:0
- Improper Validation of Integrity Check Value in TensorFlow### Impact The implementation of [`tf.sparse.split`](https://github.com/tensorflow/tensorflow/blob/5100e359aef5c8021f2e71c7b986420b85ce7b3d/tensorflow/core/kernels/sparse_split_op.cc#L26-L102) does not fully validate the input arguments. Hence, a malicious user can trigger a deni…trivy
- Incomplete validation in `QuantizeV2`TensorFlow is an end-to-end open source platform for machine learning. In affected versions due to incomplete validation in `tf.raw_ops.QuantizeV2`, an attacker can trigger undefined behavior via binding a reference to a null pointer or can access data outside the bounds of heap …trivyCVE-2021-37663
- Incomplete validation in MKL requantizationTensorFlow is an end-to-end open source platform for machine learning. In affected versions due to incomplete validation in MKL implementation of requantization, an attacker can trigger undefined behavior via binding a reference to a null pointer or can access data outside the bo…trivyCVE-2021-37665
- Incomplete validation of shapes in multiple TF opsTensorFlow is an open source platform for machine learning. In affected versions several TensorFlow operations are missing validation for the shapes of the tensor arguments involved in the call. Depending on the API, this can result in undefined behavior and segfault or `CHECK`-f…trivyCVE-2021-41206
- Incorrect validation of `SaveV2` inputsTensorFlow is an end-to-end open source platform for machine learning. In affected versions the code for `tf.raw_ops.SaveV2` does not properly validate the inputs and an attacker can trigger a null pointer dereference. The [implementation](https://github.com/tensorflow/tensorflow…trivyCVE-2021-37648
- Insecure temporary file in TensorflowTensorflow is an Open Source Machine Learning Framework. In multiple places, TensorFlow uses `tempfile.mktemp` to create temporary files. While this is acceptable in testing, in utilities and libraries it is dangerous as a different process can create the file between the check f…trivyCVE-2022-23563
- Integer overflow in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `OpLevelCostEstimator::CalculateOutputSize` is vulnerable to an integer overflow if an attacker can create an operation which would involve tensors with large enough number of elements. We can have a l…trivyCVE-2022-23576
- Integer overflow in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `OpLevelCostEstimator::CalculateTensorSize` is vulnerable to an integer overflow if an attacker can create an operation which would involve a tensor with large enough number of elements. The fix will b…trivyCVE-2022-23575
- Integer overflow in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `Range` suffers from integer overflows. These can trigger undefined behavior or, in some scenarios, extremely large allocations. The fix will be included in TensorFlow 2.8.0. We will also cherrypick th…trivyCVE-2022-23562
- Integer overflow in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of shape inference for `Dequantize` is vulnerable to an integer overflow weakness. The `axis` argument can be `-1` (the default value for the optional argument) or any other positive value at most the num…trivyCVE-2022-21727
- Integer overflow in TensorFlowTensorflow is an Open Source Machine Learning Framework. Under certain scenarios, Grappler component of TensorFlow is vulnerable to an integer overflow during cost estimation for crop and resize. Since the cropping parameters are user controlled, a malicious person can trigger un…trivyCVE-2022-23587
- Integer overflow in TFLiteTensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would cause an integer overflow in embedding lookup operations. Both `embedding_size` and `lookup_size` are products of values provided by the user. Hence, a malicious user could tr…trivyCVE-2022-23559
- Integer overflow in TFLite array creationTensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would cause an integer overflow in `TfLiteIntArrayCreate`. The `TfLiteIntArrayGetSizeInBytes` returns an `int` instead of a `size_t. An attacker can control model inputs such that `…trivyCVE-2022-23558
- Integer overflow leading to crash in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `SparseCountSparseOutput` can be made to crash a TensorFlow process by an integer overflow whose result is then used in a memory allocation. The fix will be included in TensorFlow 2.8.0. We will also c…trivyCVE-2022-21738
- Integer overflows in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `AddManySparseToTensorsMap` is vulnerable to an integer overflow which results in a `CHECK`-fail when building new `TensorShape` objects (so, an assert failure based denial of service). We are missing …trivyCVE-2022-23568
- Integer overflows in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementations of `Sparse*Cwise*` ops are vulnerable to integer overflows. These can be used to trigger large allocations (so, OOM based denial of service) or `CHECK`-fails when building new `TensorShape` objects (so, …trivyCVE-2022-23567
- Integer truncation in Shard API usageIn Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `Shard` API in TensorFlow expects the last argument to be a function taking two `int64` (i.e., `long long`) arguments. However, there are several places in TensorFlow where a lambda taking `int` or `int32` a…trivyCVE-2020-15202
- keras: Arbitrary Code execution in Keras Safe ModeThe Keras Model.load_model method can be exploited to achieve arbitrary code execution, even with safe_mode=True. One can create a specially crafted .keras model archive that, when loaded via Model.load_model, will trigger arbitrary code to be executed. This is achieved by craft…trivyCVE-2025-9906
- keras: Keras Path Traversal VulnerabilityThe keras.utils.get_file API in Keras, when used with the extract=True option for tar archives, is vulnerable to a path traversal attack. The utility uses Python's tarfile.extractall function without the filter="data" feature. A remote attacker can craft a malicious tar archive c…trivyCVE-2025-12060
- keras: Keras: Arbitrary Code Execution Vulnerability Bypassing Safe ModeA vulnerability in the `TFSMLayer` class of the `keras` package, version 3.13.0, allows attacker-controlled TensorFlow SavedModels to be loaded during deserialization of `.keras` models, even when `safe_mode=True`. This bypasses the security guarantees of `safe_mode` and enables …trivyCVE-2026-1462
- Missing validation during checkpoint loadingTensorFlow is an open source platform for machine learning. In affected versions an attacker can trigger undefined behavior, integer overflows, segfaults and `CHECK`-fail crashes if they can change saved checkpoints from outside of TensorFlow. This is because the checkpoints load…trivyCVE-2021-41203
- NPE in TFLiteTensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation of SVDF in TFLite is [vulnerable to a null pointer error](https://github.com/tensorflow/tensorflow/blob/460e000de3a83278fb00b61a16d161b1964f15f4/tensorflow/lite/kernels/…trivyCVE-2021-37681
- Null pointer dereference and heap OOB read in operations restoring tensorsTensorFlow is an end-to-end open source platform for machine learning. When restoring tensors via raw APIs, if the tensor name is not provided, TensorFlow can be tricked into dereferencing a null pointer. Alternatively, attackers can read memory outside the bounds of heap allocat…trivyCVE-2021-37639
- Null pointer dereference in `CompressElement`TensorFlow is an end-to-end open source platform for machine learning. It is possible to trigger a null pointer dereference in TensorFlow by passing an invalid input to `tf.raw_ops.CompressElement`. The [implementation](https://github.com/tensorflow/tensorflow/blob/47a06f40411a69…trivyCVE-2021-37637
- Null pointer dereference in `MatrixDiagPartOp`TensorFlow is an end-to-end open source platform for machine learning. If a user does not provide a valid padding value to `tf.raw_ops.MatrixDiagPartOp`, then the code triggers a null pointer dereference (if input is empty) or produces invalid behavior, ignoring all values after …trivyCVE-2021-37643
- Null pointer dereference in `RaggedTensorToTensor`TensorFlow is an end-to-end open source platform for machine learning. Sending invalid argument for `row_partition_types` of `tf.raw_ops.RaggedTensorToTensor` API results in a null pointer dereference and undefined behavior. The [implementation](https://github.com/tensorflow/tens…trivyCVE-2021-37638
- Null pointer dereference in `SparseTensorSliceDataset`TensorFlow is an end-to-end open source platform for machine learning. When a user does not supply arguments that determine a valid sparse tensor, `tf.raw_ops.SparseTensorSliceDataset` implementation can be made to dereference a null pointer. The [implementation](https://github.c…trivyCVE-2021-37647
- Null pointer dereference in `UncompressElement`TensorFlow is an end-to-end open source platform for machine learning. The code for `tf.raw_ops.UncompressElement` can be made to trigger a null pointer dereference. The [implementation](https://github.com/tensorflow/tensorflow/blob/f24faa153ad31a4b51578f8181d3aaab77a1ddeb/tensor…trivyCVE-2021-37649
- Null pointer dereference in TensorFlowTensorflow is an Open Source Machine Learning Framework. The implementation of `QuantizedMaxPool` has an undefined behavior where user controlled inputs can trigger a reference binding to null pointer. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this com…trivyCVE-2022-21739
- Null pointer dereference in tensorflow-liteIn tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, a crafted TFLite model can force a node to have as input a tensor backed by a `nullptr` buffer. This can be achieved by changing a buffer index in the flatbuffer serialization to convert a read-only tensor …trivyCVE-2020-15209
- Null pointer dereference in TFLiteTensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can craft a TFLite model that would trigger a null pointer dereference, which would result in a crash and denial of service. The [implementation](https://github.com/tensorflow/…trivyCVE-2021-37688
- Null pointer dereference in TFLite MLIR optimizationsTensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can craft a TFLite model that would trigger a null pointer dereference, which would result in a crash and denial of service. This is caused by the MLIR optimization of `L2Norma…trivyCVE-2021-37689
- Null-dereference in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `GetInitOp` is vulnerable to a crash caused by dereferencing a null pointer. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and…trivyCVE-2022-23577
- Null-dereference in TensorflowTensorflow is an Open Source Machine Learning Framework. When decoding a tensor from protobuf, TensorFlow might do a null-dereference if attributes of some mutable arguments to some operations are missing from the proto. This is guarded by a `DCHECK`. However, `DCHECK` is a no-op…trivyCVE-2022-23570
- Out of bounds read and write in TensorflowTensorflow is an Open Source Machine Learning Framework. There is a typo in TensorFlow's `SpecializeType` which results in heap OOB read/write. Due to a typo, `arg` is initialized to the `i`th mutable argument in a loop where the loop index is `j`. Hence it is possible to assign …trivyCVE-2022-23574
- Out of bounds read in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `FractionalAvgPoolGrad` does not consider cases where the input tensors are invalid allowing an attacker to read from outside of bounds of heap. The fix will be included in TensorFlow 2.8.0. We will al…trivyCVE-2022-21730
- Out of bounds read in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of shape inference for `ReverseSequence` does not fully validate the value of `batch_dim` and can result in a heap OOB read. There is a check to make sure the value of `batch_dim` does not go over the ran…trivyCVE-2022-21728
- Out of bounds read in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `Dequantize` does not fully validate the value of `axis` and can result in heap OOB accesses. The `axis` argument can be `-1` (the default value for the optional argument) or any other positive value a…trivyCVE-2022-21726
- Out of bounds write in grappler in TensorflowTensorFlow is an open source platform for machine learning. The function MakeGrapplerFunctionItem takes arguments that determine the sizes of inputs and outputs. If the inputs given are greater than or equal to the sizes of the outputs, an out-of-bounds memory read or a crash is …trivyCVE-2022-41902
- Out of bounds write in TensorflowTensorflow is an Open Source Machine Learning Framework. TensorFlow is vulnerable to a heap OOB write in `Grappler`. The `set_output` function writes to an array at the specified index. Hence, this gives a malicious user a write primitive. The fix will be included in TensorFlow 2…trivyCVE-2022-23566
- Out of bounds write in TFLiteTensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would cause a write outside of bounds of an array in TFLite. In fact, the attacker can override the linked list used by the memory allocator. This can be leveraged for an arbitrary …trivyCVE-2022-23561
- Overflow and uncaught divide by zero in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `UnravelIndex` is vulnerable to a division by zero caused by an integer overflow bug. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2…trivyCVE-2022-21729
- python-requests: Redirect from HTTPS to HTTP does not remove Authorization headerThe Requests package before 2.20.0 for Python sends an HTTP Authorization header to an http URI upon receiving a same-hostname https-to-http redirect, which makes it easier for remote attackers to discover credentials by sniffing the network.trivyCVE-2018-18074
- Reachable Assertion in TensorflowTensorflow is an Open Source Machine Learning Framework. When decoding a tensor from protobuf, a TensorFlow process can encounter cases where a `CHECK` assertion is invalidated based on user controlled arguments, if the tensors have an invalid `dtype` and 0 elements or an invalid…trivyCVE-2022-23571
- Reachable Assertion in TensorflowTensorflow is an Open Source Machine Learning Framework. When decoding a resource handle tensor from protobuf, a TensorFlow process can encounter cases where a `CHECK` assertion is invalidated based on user controlled arguments. This allows attackers to cause denial of services i…trivyCVE-2022-23564
- Read and Write outside of bounds in TensorFlowTensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would allow limited reads and writes outside of arrays in TFLite. This exploits missing validation in the conversion from sparse tensors to dense tensors. The fix is included in Ten…trivyCVE-2022-23560
- Reference binding to `nullptr` in `tf.ragged.cross`TensorFlow is an open source platform for machine learning. In affected versions the shape inference code for `tf.ragged.cross` has an undefined behavior due to binding a reference to `nullptr`. The fix will be included in TensorFlow 2.7.0. We will also cherrypick this commit on …trivyCVE-2021-41214
- Reference binding to nullptr and heap OOB in binary cwise opsTensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can cause undefined behavior via binding a reference to null pointer in all binary cwise operations that don't require broadcasting (e.g., gradients of binary cwise operations)…trivyCVE-2021-37659
- Reference binding to nullptr in `RaggedTensorToVariant`TensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can cause undefined behavior via binding a reference to null pointer in `tf.raw_ops.RaggedTensorToVariant`. The [implementation](https://github.com/tensorflow/tensorflow/blob/4…trivyCVE-2021-37666
- Reference binding to nullptr in map operationsTensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can cause undefined behavior via binding a reference to null pointer in `tf.raw_ops.Map*` and `tf.raw_ops.OrderedMap*` operations. The [implementation](https://github.com/tenso…trivyCVE-2021-37671
- Reference binding to nullptr in shape inferenceTensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can cause undefined behavior via binding a reference to null pointer in `tf.raw_ops.SparseFillEmptyRows`. The shape inference [implementation](https://github.com/tensorflow/ten…trivyCVE-2021-37676
- Reference binding to nullptr in unicode encodingTensorFlow is an end-to-end open source platform for machine learning. In affected versions an attacker can cause undefined behavior via binding a reference to null pointer in `tf.raw_ops.UnicodeEncode`. The [implementation](https://github.com/tensorflow/tensorflow/blob/460e000de…trivyCVE-2021-37667
- Segfault and heap buffer overflow in `{Experimental,}DatasetToTFRecord`TensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation for `tf.raw_ops.ExperimentalDatasetToTFRecord` and `tf.raw_ops.DatasetToTFRecord` can trigger heap buffer overflow and segmentation fault. The [implementation](https://g…trivyCVE-2021-37650
- Segfault and OOB write due to incomplete validation in `EditDistance` in TensorFlowTensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implementation of `tf.raw_ops.EditDistance` has incomplete validation. Users can pass negative values to cause a segmentation fault based denial of service. In multip…trivyCVE-2022-29208
- Segfault in `tf.quantization.quantize_and_dequantize`In Tensorflow before version 2.4.0, an attacker can pass an invalid `axis` value to `tf.quantization.quantize_and_dequantize`. This results in accessing a dimension outside the rank of the input tensor in the C++ kernel implementation. However, dim_size only does a DCHECK to vali…trivyCVE-2020-15265
- Segmentation fault in tensorflow-liteIn tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, if a TFLite saved model uses the same tensor as both input and output of an operator, then, depending on the operator, we can observe a segmentation fault or just memory corruption. We have patched the issu…trivyCVE-2020-15210
- Stack overflow due to looping TFLite subgraphTensorFlow is an end-to-end open source platform for machine learning. TFlite graphs must not have loops between nodes. However, this condition was not checked and an attacker could craft models that would result in infinite loop during evaluation. In certain cases, the infinite …trivyCVE-2021-29591
- Stack overflow in TensorFlowTensorflow is an Open Source Machine Learning Framework. The `GraphDef` format in TensorFlow does not allow self recursive functions. The runtime assumes that this invariant is satisfied. However, a `GraphDef` containing a fragment such as the following can be consumed when loadi…trivyCVE-2022-23591
- TensorFlow vulnerable to OOB read in `Gather_nd` in TF LiteTensorFlow is an open source platform for machine learning. The `GatherNd` function takes arguments that determine the sizes of inputs and outputs. If the inputs given are greater than or equal to the sizes of the outputs, an out-of-bounds memory read is triggered. This issue has…trivyCVE-2022-35937
- TensorFlow vulnerable to OOB write in `scatter_nd` in TF LiteTensorFlow is an open source platform for machine learning. The `ScatterNd` function takes an input argument that determines the indices of of the output tensor. An input index greater than the output tensor or less than zero will either write content at the wrong index or trigge…trivyCVE-2022-35939
- Type confusion leading to segfault in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of shape inference for `ConcatV2` can be used to trigger a denial of service attack via a segfault caused by a type confusion. The `axis` argument is translated into `concat_dim` in the `ConcatShapeHelper…trivyCVE-2022-21731
- Undefined behavior in `SparseTensorSliceDataset`Tensorflow is an Open Source Machine Learning Framework. The implementation of `SparseTensorSliceDataset` has an undefined behavior: under certain condition it can be made to dereference a `nullptr` value. The 3 input arguments to `SparseTensorSliceDataset` represent a sparse ten…trivyCVE-2022-21736
- Undefined behavior via `nullptr` reference binding in sparse matrix multiplicationTensorFlow is an open source platform for machine learning. In affected versions the code for sparse matrix multiplication is vulnerable to undefined behavior via binding a reference to `nullptr`. This occurs whenever the dimensions of `a` or `b` are 0 or less. In the case on one…trivyCVE-2021-41219
- Uninitialized variable access in TensorflowTensorflow is an Open Source Machine Learning Framework. The implementation of `AssignOp` can result in copying uninitialized data to a new tensor. This later results in undefined behavior. The implementation has a check that the left hand side of the assignment is initialized (t…trivyCVE-2022-23573
- Unitialized access in `EinsumHelper::ParseEquation`TensorFlow is an open source platform for machine learning. In affeced versions during execution, `EinsumHelper::ParseEquation()` is supposed to set the flags in `input_has_ellipsis` vector and `*output_has_ellipsis` boolean to indicate whether there is ellipsis in the correspond…trivyCVE-2021-41201
- Use after free in `DecodePng` kernelTensorflow is an Open Source Machine Learning Framework. A malicious user can cause a use after free behavior when decoding PNG images. After `png::CommonFreeDecode(&decode)` gets called, the values of `decode.width` and `decode.height` are in an unspecified state. The fix will b…trivyCVE-2022-23584
- Use after free in boosted trees creationTensorFlow is an end-to-end open source platform for machine learning. In affected versions the implementation for `tf.raw_ops.BoostedTreesCreateEnsemble` can result in a use after free error if an attacker supplies specially crafted arguments. The [implementation](https://github…trivyCVE-2021-37652
This report is public.