« Back to list

CVE-2022-35974

Status: ModifiedHigh (7.5)—

TensorFlow is an open source platform for machine learning. If `QuantizeDownAndShrinkRange` is given nonscalar inputs for `input_min` or `input_max`, it results in a segfault that can be used to trigger a denial of service attack. We have patched the issue in GitHub commit 73ad1815ebcfeb7c051f9c2f7ab5024380ca8613. The fix will be included in TensorFlow 2.10.0. We will also cherrypick this commit on TensorFlow 2.9.1, TensorFlow 2.8.1, and TensorFlow 2.7.2, as these are also affected and still in supported range. There are no known workarounds for this issue.

CVSS

Exploitation probability (EPSS)

EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).

Affected technologies (1)

CWEs

References

Raw JSON (NVD)

Show
{
  "id": "CVE-2022-35974",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2022-35974",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "partial"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2025-04-23T13:59:22.276584Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "security-advisories@github.com",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 5.9,
          "attackVector": "NETWORK",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "HIGH",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 2.2
      },
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 7.5,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "security-advisories@github.com",
      "affectedData": [
        {
          "vendor": "tensorflow",
          "product": "tensorflow",
          "versions": [
            {
              "status": "affected",
              "version": "< 2.7.2"
            },
            {
              "status": "affected",
              "version": ">= 2.8.0, < 2.8.1"
            },
            {
              "status": "affected",
              "version": ">= 2.9.0, < 2.9.1"
            }
          ]
        }
      ]
    }
  ],
  "published": "2022-09-16T21:15:09.550",
  "references": [
    {
      "url": "https://github.com/tensorflow/tensorflow/commit/73ad1815ebcfeb7c051f9c2f7ab5024380ca8613",
      "tags": [
        "Patch",
        "Third Party Advisory"
      ],
      "source": "security-advisories@github.com"
    },
    {
      "url": "https://github.com/tensorflow/tensorflow/security/advisories/GHSA-vgvh-2pf4-jr2x",
      "tags": [
        "Patch",
        "Third Party Advisory"
      ],
      "source": "security-advisories@github.com"
    },
    {
      "url": "https://github.com/tensorflow/tensorflow/commit/73ad1815ebcfeb7c051f9c2f7ab5024380ca8613",
      "tags": [
        "Patch",
        "Third Party Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://github.com/tensorflow/tensorflow/security/advisories/GHSA-vgvh-2pf4-jr2x",
      "tags": [
        "Patch",
        "Third Party Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "security-advisories@github.com",
      "description": [
        {
          "lang": "en",
          "value": "CWE-20"
        }
      ]
    },
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-noinfo"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "TensorFlow is an open source platform for machine learning. If `QuantizeDownAndShrinkRange` is given nonscalar inputs for `input_min` or `input_max`, it results in a segfault that can be used to trigger a denial of service attack. We have patched the issue in GitHub commit 73ad1815ebcfeb7c051f9c2f7ab5024380ca8613. The fix will be included in TensorFlow 2.10.0. We will also cherrypick this commit on TensorFlow 2.9.1, TensorFlow 2.8.1, and TensorFlow 2.7.2, as these are also affected and still in supported range. There are no known workarounds for this issue."
    },
    {
      "lang": "es",
      "value": "TensorFlow es una plataforma de código abierto para el aprendizaje automático. Si \"QuantizeDownAndShrinkRange\" recibe entradas no escalares para \"input_min\" o \"input_max\", resulta en un segfault que puede usarse para desencadenar un ataque de denegación de servicio. Hemos parcheado el problema en el commit 73ad1815ebcfeb7c051f9c2f7ab5024380ca8613 de GitHub. La corrección será incluida en TensorFlow versión 2.10.0. También seleccionaremos este compromiso en TensorFlow versión 2.9.1, TensorFlow versión 2.8.1, y TensorFlow versión 2.7.2, ya que estos también están afectados y todavía están en el rango admitido. No se presentan mitigaciones conocidas para este problema"
    }
  ],
  "lastModified": "2026-06-17T04:52:38.030",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:google:tensorflow:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "C4DFBF2D-5283-42F6-8800-D653BFA5CE82",
              "versionEndExcluding": "2.7.2",
              "versionStartIncluding": "2.7.0"
            },
            {
              "criteria": "cpe:2.3:a:google:tensorflow:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "0F9D273D-02DC-441E-AA91-EAC8DEAA4B44",
              "versionEndExcluding": "2.8.1",
              "versionStartIncluding": "2.8.0"
            },
            {
              "criteria": "cpe:2.3:a:google:tensorflow:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "FE4F8A81-6CC2-4F7F-9602-C170FDD926E7",
              "versionEndExcluding": "2.9.1",
              "versionStartIncluding": "2.9.0"
            },
            {
              "criteria": "cpe:2.3:a:google:tensorflow:2.10:rc0:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "1DBFBCE2-0A01-4575-BE45-6775ABFB8B28"
            },
            {
              "criteria": "cpe:2.3:a:google:tensorflow:2.10:rc1:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "89806CF9-E423-4CA6-A01A-8175C260CB24"
            },
            {
              "criteria": "cpe:2.3:a:google:tensorflow:2.10:rc2:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "F2B80690-A257-4E16-BD27-9AE045BC56ED"
            },
            {
              "criteria": "cpe:2.3:a:google:tensorflow:2.10:rc3:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "F335F9A4-5AB8-4E53-BC18-E01F7C653E5E"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "security-advisories@github.com"
}