Vulnerabilities in TensorFlow
403 resultsVexday analysis
TensorFlow apresenta um perfil de risco baixo com apenas 2 vulnerabilidades registradas na base, nenhuma sob exploração ativa conhecida e nenhuma classificada como crítica. A fraqueza dominante identificada é CWE-427 (validação imprópria de índices), sem atualizações de risco nos últimos 90 dias, indicando um cenário estável.
CVE-2021-29614HIGHInterpreter crash from `tf.io.decode_raw`EPSS 0.2%CVE-2021-29605HIGHInteger overflow in TFLite memory allocationEPSS 0.2%CVE-2021-41214HIGHReference binding to `nullptr` in `tf.ragged.cross`EPSS 0.2%CVE-2021-41228HIGHCode injection in `saved_model_cli`EPSS 0.2%CVE-2021-29551LOWOOB read in `MatrixTriangularSolve`EPSS 0.2%CVE-2021-29533LOWCHECK-fail in DrawBoundingBoxesEPSS 0.2%CVE-2020-26271MEDIUMHeap out of bounds access in MakeEdge in TensorFlowEPSS 0.2%CVE-2021-29606HIGHHeap OOB read in TFLiteEPSS 0.2%CVE-2021-29592MEDIUMNull pointer dereference in TFLite's `Reshape` operatorEPSS 0.2%CVE-2021-29540LOWHeap buffer overflow in `Conv2DBackpropFilter`EPSS 0.2%CVE-2021-29579LOWHeap buffer overflow in `MaxPoolGrad`EPSS 0.2%CVE-2021-41195MEDIUMCrash in `tf.math.segment_*` operationsEPSS 0.2%CVE-2020-26268MEDIUMWrite to immutable memory region in TensorFlowEPSS 0.2%CVE-2021-29514LOWHeap out of bounds write in `RaggedBinCount`EPSS 0.2%CVE-2021-29577LOWHeap buffer overflow in `AvgPool3DGrad`EPSS 0.2%CVE-2021-41219HIGHUndefined behavior via `nullptr` reference binding in sparse matrix multiplicationEPSS 0.2%CVE-2021-29578LOWHeap buffer overflow in `FractionalAvgPoolGrad`EPSS 0.2%CVE-2021-29576LOWHeap buffer overflow in `MaxPool3DGradGrad`EPSS 0.2%CVE-2021-29512LOWHeap buffer overflow in `RaggedBinCount`EPSS 0.2%CVE-2021-29536LOWHeap buffer overflow in `QuantizedReshape`EPSS 0.2%