Vulnerabilities in TensorFlow
403 resultsVexday analysis
TensorFlow apresenta um perfil de risco baixo com apenas 2 vulnerabilidades registradas na base, nenhuma sob exploração ativa conhecida e nenhuma classificada como crítica. A fraqueza dominante identificada é CWE-427 (validação imprópria de índices), sem atualizações de risco nos últimos 90 dias, indicando um cenário estável.
CVE-2020-15208HIGHData corruption in tensorflow-liteEPSS 0.9%CVE-2020-15196HIGHHeap buffer overflow in TensorflowEPSS 0.9%CVE-2020-15204MEDIUMSegfault in TensorflowEPSS 0.9%CVE-2020-15191MEDIUMUndefined behavior in TensorflowEPSS 0.9%CVE-2022-23587HIGHInteger overflow in TensorflowEPSS 0.9%CVE-2022-23583MEDIUM`CHECK`-failures in binary ops in TensorflowEPSS 0.9%CVE-2022-23588MEDIUM`CHECK`-fails due to attempting to build a reference tensor in TensorflowEPSS 0.9%CVE-2022-23593MEDIUMSegfault in `simplifyBroadcast` in TensorflowEPSS 0.9%CVE-2022-23592HIGHOut of bounds read in TensorflowEPSS 0.9%CVE-2020-15200MEDIUMSegfault in TensorflowEPSS 0.9%CVE-2022-23560HIGHRead and Write outside of bounds in TFLiteEPSS 0.8%CVE-2022-23574HIGHOut of bounds read and write in TensorflowEPSS 0.8%CVE-2023-25668CRITICALTensorFlow vulnerable to heap out-of-buffer read in the QuantizeAndDequantize operationEPSS 0.8%CVE-2020-15192MEDIUMMemory leak in TensorflowEPSS 0.8%CVE-2020-15193HIGHMemory corruption in TensorflowEPSS 0.8%CVE-2022-23579MEDIUM`CHECK`-failures during Grappler's `SafeToRemoveIdentity` in TensorflowEPSS 0.8%CVE-2022-23580MEDIUMAbort caused by allocating a vector that is too large in TensorflowEPSS 0.8%CVE-2022-23558HIGHInteger overflow in TFLite array creationEPSS 0.8%CVE-2020-15199MEDIUMDenial of Service in TensorflowEPSS 0.8%CVE-2022-23586MEDIUMMultiple `CHECK`-fails in `function.cc` in TensorflowEPSS 0.8%