Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2747▼ 495 respecto a la semana anterior
Críticas / altas1308▼ 202 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
467 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Baja (3.3) | 0.17% | — | Google Tensorflow | 10/12/2020 | 17/6/2026 | In affected versions of TensorFlow running an LSTM/GRU model where the LSTM/GRU layer receives an input with zero-length results in a CHECK failure when using the CUDA backend. This can result in a query-of-death vulnerability, via denial of service, if users can control the input to the layer. This is fixed in… | |
| Modificada | Alta (7.5) | 0.70% | — | Google Tensorflow | 10/12/2020 | 17/6/2026 | In TensorFlow release candidate versions 2.4.0rc*, the general implementation for matching filesystem paths to globbing pattern is vulnerable to an access out of bounds of the array holding the directories. There are multiple invariants and preconditions that are assumed by the parallel implementation of… | |
| Modificada | Media (4.4) | 0.21% | — | Google Tensorflow | 10/12/2020 | 17/6/2026 | In affected versions of TensorFlow the tf.raw_ops.ImmutableConst operation returns a constant tensor created from a memory mapped file which is assumed immutable. However, if the type of the tensor is not an integral type, the operation crashes the Python interpreter as it tries to write to the memory area. If the… | |
| Modificada | Alta (7.8) | 0.24% | — | Google Tensorflow | 10/12/2020 | 17/6/2026 | In affected versions of TensorFlow the tf.raw_ops.DataFormatVecPermute API does not validate the src_format and dst_format attributes. The code assumes that these two arguments define a permutation of NHWC. This can result in uninitialized memory accesses, read outside of bounds and even crashes. This is fixed in… | |
| Modificada | Media (5.3) | 0.26% | — | Google Tensorflow | 10/12/2020 | 17/6/2026 | In affected versions of TensorFlow under certain cases a saved model can trigger use of uninitialized values during code execution. This is caused by having tensor buffers be filled with the default value of the type but forgetting to default initialize the quantized floating point types in Eigen. This is fixed in… | |
| Modificada | Baja (3.3) | 0.22% | — | Google Tensorflow | 10/12/2020 | 17/6/2026 | In affected versions of TensorFlow under certain cases, loading a saved model can result in accessing uninitialized memory while building the computation graph. The MakeEdge function creates an edge between one output tensor of the src node (given by output_index) and the input slot of the dst node (given by… | |
| Modificada | Alta (7.5) | 0.94% | — | Google Tensorflow | 21/10/2020 | 17/6/2026 | In Tensorflow before version 2.4.0, when the `boxes` argument of `tf.image.crop_and_resize` has a very large value, the CPU kernel implementation receives it as a C++ `nan` floating point value. Attempting to operate on this is undefined behavior which later produces a segmentation fault. The issue is patched in… | |
| Modificada | Alta (7.5) | 0.91% | — | Google Tensorflow | 21/10/2020 | 17/6/2026 | In Tensorflow before version 2.4.0, an attacker can pass an invalid `axis` value to `tf.quantization.quantize_and_dequantize`. This results in accessing a dimension outside the rank of the input tensor in the C++ kernel implementation. However, dim_size only does a DCHECK to validate the argument and then uses it to… | |
| Modificada | Alta (8.1) | 0.67% | — | Google Tensorflow | 25/9/2020 | 17/6/2026 | In TensorFlow Lite before versions 2.2.1 and 2.3.1, models using segment sum can trigger a write out bounds / segmentation fault if the segment ids are not sorted. Code assumes that the segment ids are in increasing order, using the last element of the tensor holding them to determine the dimensionality of output… | |
| Modificada | Media (4) | 0.76% | — | Google Tensorflow | 25/9/2020 | 17/6/2026 | In TensorFlow Lite before versions 2.2.1 and 2.3.1, models using segment sum can trigger a denial of service by causing an out of memory allocation in the implementation of segment sum. Since code uses the last element of the tensor holding them to determine the dimensionality of output tensor, attackers can use a… | |
| Modificada | Alta (8.6) | 0.74% | — | Google Tensorflow | 25/9/2020 | 17/6/2026 | In TensorFlow Lite before versions 2.2.1 and 2.3.1, models using segment sum can trigger writes outside of bounds of heap allocated buffers by inserting negative elements in the segment ids tensor. Users having access to `segment_ids_data` can alter `output_index` and then write to outside of `output_data` buffer.… | |
| Modificada | Media (4.8) | 0.92% | — | Google TensorflowOpensuse Leap | 25/9/2020 | 17/6/2026 | In TensorFlow Lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, saved models in the flatbuffer format use a double indexing scheme: a model has a set of subgraphs, each subgraph has a set of operators and each operator has a set of input/output tensors. The flatbuffer format uses indices for the tensors,… | |
| Modificada | Media (6.5) | 0.74% | — | Google TensorflowOpensuse Leap | 25/9/2020 | 17/6/2026 | In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, if a TFLite saved model uses the same tensor as both input and output of an operator, then, depending on the operator, we can observe a segmentation fault or just memory corruption. We have patched the issue in d58c96946b and will release patch… | |
| Modificada | Media (5.9) | 0.80% | — | Google TensorflowOpensuse Leap | 25/9/2020 | 17/6/2026 | In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, a crafted TFLite model can force a node to have as input a tensor backed by a `nullptr` buffer. This can be achieved by changing a buffer index in the flatbuffer serialization to convert a read-only tensor to a read-write one. The runtime… | |
| Modificada | Crítica (9.8) | 0.91% | — | Google TensorflowOpensuse Leap | 25/9/2020 | 17/6/2026 | In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, when determining the common dimension size of two tensors, TFLite uses a `DCHECK` which is no-op outside of debug compilation modes. Since the function always returns the dimension of the first tensor, malicious attackers can craft cases where… | |
| Modificada | Crítica (9) | 1.2% | — | Google TensorflowOpensuse Leap | 25/9/2020 | 17/6/2026 | In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, to mimic Python's indexing with negative values, TFLite uses `ResolveAxis` to convert negative values to positive indices. However, the only check that the converted index is now valid is only present in debug builds. If the `DCHECK` does not… | |
| Modificada | Alta (7.5) | 0.96% | — | Google TensorflowOpensuse Leap | 25/9/2020 | 17/6/2026 | In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, changing the TensorFlow's `SavedModel` protocol buffer and altering the name of required keys results in segfaults and data corruption while loading the model. This can cause a denial of service in products using `tensorflow-serving` or other… | |
| Modificada | Crítica (9.8) | 1.0% | — | Google TensorflowOpensuse Leap | 25/9/2020 | 17/6/2026 | In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `data_splits` argument of `tf.raw_ops.StringNGrams` lacks validation. This allows a user to pass values that can cause heap overflow errors and even leak contents of memory In the linked code snippet, all the binary strings after `ee ff` are… | |
| Modificada | Media (5.3) | 0.90% | — | Google TensorflowOpensuse Leap | 25/9/2020 | 17/6/2026 | In eager mode, TensorFlow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1 does not set the session state. Hence, calling `tf.raw_ops.GetSessionHandle` or `tf.raw_ops.GetSessionHandleV2` results in a null pointer dereference In linked snippet, in eager mode, `ctx->session_state()` returns `nullptr`. Since code… | |
| Modificada | Alta (7.5) | 0.97% | — | Google TensorflowOpensuse Leap | 25/9/2020 | 17/6/2026 | In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, by controlling the `fill` argument of tf.strings.as_string, a malicious attacker is able to trigger a format string vulnerability due to the way the internal format use in a `printf` call is constructed. This may result in segmentation fault. The… | |
| Modificada | Crítica (9) | 1.3% | — | Google TensorflowOpensuse Leap | 25/9/2020 | 17/6/2026 | In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `Shard` API in TensorFlow expects the last argument to be a function taking two `int64` (i.e., `long long`) arguments. However, there are several places in TensorFlow where a lambda taking `int` or `int32` arguments is being used. In these cases,… | |
| Modificada | Media (4.8) | 0.57% | — | Google Tensorflow | 25/9/2020 | 17/6/2026 | In Tensorflow before version 2.3.1, the `RaggedCountSparseOutput` implementation does not validate that the input arguments form a valid ragged tensor. In particular, there is no validation that the values in the `splits` tensor generate a valid partitioning of the `values` tensor. Hence, the code is prone to heap… | |
| Modificada | Media (5.9) | 0.85% | — | Google Tensorflow | 25/9/2020 | 17/6/2026 | In Tensorflow before version 2.3.1, the `RaggedCountSparseOutput` implementation does not validate that the input arguments form a valid ragged tensor. In particular, there is no validation that the values in the `splits` tensor generate a valid partitioning of the `values` tensor. Thus, the code sets up conditions to… | |
| Modificada | Media (5.9) | 0.81% | — | Google Tensorflow | 25/9/2020 | 17/6/2026 | In Tensorflow before version 2.3.1, the `RaggedCountSparseOutput` does not validate that the input arguments form a valid ragged tensor. In particular, there is no validation that the `splits` tensor has the minimum required number of elements. Code uses this quantity to initialize a different data structure. Since… | |
| Modificada | Media (5.4) | 0.54% | — | Google Tensorflow | 25/9/2020 | 17/6/2026 | In Tensorflow before version 2.3.1, the `SparseCountSparseOutput` implementation does not validate that the input arguments form a valid sparse tensor. In particular, there is no validation that the `indices` tensor has the same shape as the `values` one. The values in these tensors are always accessed in parallel.… |