CRITICAL9.8CVE-2023-25668TensorFlow vulnerable to heap out-of-buffer read in the QuantizeAndDequantize operation from 0, < 2.11.1
CRITICAL9.8CVE-2018-7575Integer Overflow or Wraparound in Google TensorFlow from 0, < 1.7.1
CRITICAL9.8CVE-2018-7575Integer Overflow or Wraparound in Google TensorFlow >= 1.0.0, < 1.7.1
CRITICAL9.3Incomplete validation in boosted trees code
from 0, < 5c8c9a8bfe750f9743d0c859bae112060b216f5c | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
CRITICAL9.3Incomplete validation in boosted trees code
>= 2.6.0, < 2.6.1
CRITICAL9.3Arbitrary code execution due to YAML deserialization
from 0, < 23d6383eb6c14084a8fc3bdf164043b974818012 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
CRITICAL9.3Arbitrary code execution due to YAML deserialization
from 0, < 2.3.4
CRITICAL9.1Heap out of bounds read in filesystem glob matching in TensorFlow
from 0, < 8b5b9dc96666a3a5d27fad7179ff215e3b74b67c | >= 2.4.0rc0, < 2.4.0
CRITICAL9.1Heap out of bounds read in filesystem glob matching in TensorFlow
>= 2.4.0rc0, < 2.4.0
CRITICAL9.0Denial of Service in Tensorflow
from 0, < adf095206f25471e864a8e63a0f1caef53a0e3a6 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
CRITICAL9.0Denial of Service in Tensorflow
from 0, < 1.15.4
CRITICAL9.0Data leak in Tensorflow
from 0, < 0462de5b544ed4731aa2fb23946ac22c01856b80 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
CRITICAL9.0Data leak in Tensorflow
from 0, < 1.15.4
CRITICAL9.0Integer truncation in Shard API usage
from 0, < 1.15.4
CRITICAL9.0Integer truncation in Shard API usage
from 0, < 27b417360cbd671ef55915e4bb6bb06af8b8a832, < ca8c013b5e97b1373b3bb1c97ea655e69f31a575 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
HIGH8.8Out of bounds write in Tensorflow
from 0, < 2.5.3
HIGH8.8Out of bounds write in TFLite
from 0, < 2.5.3
HIGH8.8Read and Write outside of bounds in TFLite
from 0, < 2.5.3
HIGH8.8Integer overflow in TFLite
from 0, < 2.5.3
HIGH8.8Out of bounds read in Tensorflow
>= 2.7.0, < 2.7.1
HIGH8.8Integer overflow in Tensorflow
from 0, < 2.5.3
HIGH8.8Out of bounds read and write in Tensorflow
from 0, < 2.5.3
HIGH8.8Improper Restriction of Operations within the Bounds of a Memory Buffer in Google TensorFlow
>= 1.5.0, < 1.7.1
HIGH8.8Improper Restriction of Operations within the Bounds of a Memory Buffer in Google TensorFlow
from 0, < 1.7.1
HIGH8.7Segfault and data corruption in tensorflow-lite
from 0, < 2d88f470dea2671b430884260f3626b1fe99830a | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
HIGH8.7Segfault and data corruption in tensorflow-lite
from 0, < 1.15.4
HIGH8.5Heap buffer overflow in Tensorflow
from 0, < 390611e0d45c5793c7066110af37c8514e6a6c54 | from 0, < 1.15.4, >= 2.0.0, < 2.0.3, >= 2.1.0, < 2.1.2, >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
HIGH8.5Heap buffer overflow in Tensorflow
from 0, < 1.15.4
HIGH8.5Heap buffer overflow in Tensorflow
>= 2.3.0, < 2.3.1
HIGH8.5Heap buffer overflow in Tensorflow
from 0, < 3cbb917b4714766030b28eba9fb41bb97ce9ee02 | from 0, < 2.3.1
HIGH8.4Null pointer dereference and heap OOB read in TensorFlow
from 0, < 9e82dce6e6bd1f36a57e08fa85af213e2b2f2622 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH8.4Null pointer dereference and heap OOB read in TensorFlow
from 0, < 2.3.4
HIGH8.1Out of bounds read in Tensorflow
>= 2.8.0-rc0, < 2.8.0
HIGH8.1Out of bounds read in Tensorflow
from 0, < 2.5.3
HIGH8.1Out of bounds read in Tensorflow
from 0, < 2.5.3
HIGH8.1Out of bounds read in Tensorflow
from 0, < 2.5.3
HIGH8.1Out of bounds access in tensorflow-lite
from 0, < 204945b19e44b57906c9344c0d00120eeeae178a | >= 2.3.0, < 2.3.1, >= 2.2.0, < 2.2.1
HIGH8.1Out of bounds access in tensorflow-lite
>= 2.2.0, < 2.2.1
HIGH8.1Out of bounds write in tensorflow-lite
>= 2.2.0, < 2.2.1
HIGH8.1Out of bounds write in tensorflow-lite
from 0, < 204945b19e44b57906c9344c0d00120eeeae178a | >= 2.2.0, < 2.2.1, >= 2.3.0, < 2.3.1
HIGH8.1Improper Input Validation in Google TensorFlow
>= 1.1.0, < 1.7.1
HIGH8.1Improper Input Validation in Google TensorFlow
from 0, < 1.7.1
HIGH8.1Improper Restriction of Operations within the Bounds of a Memory Buffer in Google TensorFlow
from 0, < 1.7.1
HIGH8.1Improper Restriction of Operations within the Bounds of a Memory Buffer in Google TensorFlow
>= 1.1.0, < 1.7.1
HIGH8.0TensorFlow has double free in Fractional(Max/Avg)Pool
from 0, < 2.11.1
HIGH7.8Code injection in `saved_model_cli` in TensorFlow
from 0, < 2.6.4
HIGH7.8Unitialized access in `EinsumHelper::ParseEquation`
>= 2.6.0, < 2.6.1
HIGH7.8Unitialized access in `EinsumHelper::ParseEquation`
from 0, < f09caa532b6e1ac8d2aa61b7832c78c5b79300c6 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
HIGH7.8Missing validation during checkpoint loading
>= 2.6.0, < 2.6.1
HIGH7.8Missing validation during checkpoint loading
from 0, < 368af875869a204b4ac552b9ddda59f6a46a56ec, < abcced051cb1bd8fb05046ac3b6023a7ebcc4578, < e8dc63704c88007ee4713076605c90188d66f3d2, < b619c6f865715ca3b15ef1842b5b95edbaa710ad | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
HIGH7.8Reference binding to `nullptr` in `tf.ragged.cross`
from 0, < fa6b7782fbb14aa08d767bc799c531f5e1fb3bb8 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
HIGH7.8Reference binding to `nullptr` in `tf.ragged.cross`
>= 2.6.0, < 2.6.1
HIGH7.8Undefined behavior via `nullptr` reference binding in sparse matrix multiplication
from 0, < e6cf28c72ba2eb949ca950d834dd6d66bb01cfae | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
HIGH7.8Undefined behavior via `nullptr` reference binding in sparse matrix multiplication
>= 2.6.0, < 2.6.1
HIGH7.8Use after free in `CollectiveReduceV2`
from 0, < ca38dab9d3ee66c5de06f11af9a4b1200da5ef75 | >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
HIGH7.8Use after free in `CollectiveReduceV2`
>= 2.6.0, < 2.6.1
HIGH7.8Access to invalid memory during shape inference in `Cudnn*` ops
>= 2.6.0, < 2.6.1
HIGH7.8Access to invalid memory during shape inference in `Cudnn*` ops
from 0, < af5fcebb37c8b5d71c237f4e59c6477015c78ce6 | from 0, < 2.4.4, >= 2.5.0, < 2.5.2, >= 2.6.0, < 2.6.1, >= 2.7.0rc0, < 2.7.0
HIGH7.8Incorrect validation of `SaveV2` inputs in TensorFlow
from 0, < 2.3.4
HIGH7.8Incorrect validation of `SaveV2` inputs in TensorFlow
from 0, < 9728c60e136912a12d99ca56e106b7cce7af5986 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.8Segfault and heap buffer overflow in `{Experimental,}DatasetToTFRecord` in TensorFlow
from 0, < 2.3.4
HIGH7.8Segfault and heap buffer overflow in `{Experimental,}DatasetToTFRecord` in TensorFlow
from 0, < e0b6e58c328059829c3eb968136f17aa72b6c876 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.8Use after free in boosted trees creation in TensorFlow
from 0, < 5ecec9c6fbdbc6be03295685190a45e7eee726ab | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.8Use after free in boosted trees creation in TensorFlow
from 0, < 2.3.4
HIGH7.8Incomplete validation in `QuantizeV2` in TensorFlow
from 0, < 2.3.4
HIGH7.8Incomplete validation in `QuantizeV2` in TensorFlow
from 0, < 6da6620efad397c85493b8f8667b821403516708 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.8Incomplete validation in MKL requantization in TensorFlow
from 0, < 2.3.4
HIGH7.8Incomplete validation in MKL requantization in TensorFlow
from 0, < 9e62869465573cb2d9b5053f1fa02a81fce21d69, < 203214568f5bc237603dbab6e1fd389f1572f5c9 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.8Reference binding to nullptr in `RaggedTensorToVariant` in TensorFlow
from 0, < be7a4de6adfbd303ce08be4332554dff70362612 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.8Reference binding to nullptr in `RaggedTensorToVariant` in TensorFlow
from 0, < 2.3.4
HIGH7.8Reference binding to nullptr in unicode encoding in TensorFlow
from 0, < 2e0ee46f1a47675152d3d865797a18358881d7a6 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.8Reference binding to nullptr in unicode encoding in TensorFlow
from 0, < 2.3.4
HIGH7.8Reference binding to nullptr in map operations in TensorFlow
from 0, < 532f5c5a547126c634fefd43bbad1dc6417678ac | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.8Reference binding to nullptr in map operations in TensorFlow
from 0, < 2.3.4
HIGH7.8Reference binding to nullptr in shape inference in TensorFlow
from 0, < 2.3.4
HIGH7.8Reference binding to nullptr in shape inference in TensorFlow
from 0, < 578e634b4f1c1c684d4b4294f9e5281b2133b3ed | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.8Null pointer exception in TensorFlow Lite
from 0, < 5b048e87e4e55990dae6b547add4dae59f4e1c76 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.8Null pointer exception in TensorFlow Lite
from 0, < 2.3.4
HIGH7.8Null pointer dereference in TensorFlow Lite
from 0, < 15691e456c7dc9bd6be203b09765b063bf4a380c | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.8Null pointer dereference in TensorFlow Lite
from 0, < 2.3.4
HIGH7.8Null pointer dereference in TensorFlow Lite MLIR optimizations
from 0, < 2.3.4
HIGH7.8Null pointer dereference in TensorFlow Lite MLIR optimizations
from 0, < d6b57f461b39fd1aa8c1b870f1b974aac3554955 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.7Null pointer dereference in `CompressElement` in TensorFlow
from 0, < 2.3.4
HIGH7.7Null pointer dereference in `CompressElement` in TensorFlow
from 0, < 5dc7f6981fdaf74c8c5be41f393df705841fb7c5 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.7Null pointer dereference in `RaggedTensorToTensor` in TensorFlow
from 0, < 301ae88b331d37a2a16159b65b255f4f9eb39314 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.7Null pointer dereference in `RaggedTensorToTensor` in TensorFlow
from 0, < 2.3.4
HIGH7.7Null pointer dereference in `MatrixDiagPartOp` in TensorFlow
from 0, < 2.3.4
HIGH7.7Null pointer dereference in `MatrixDiagPartOp` in TensorFlow
from 0, < 482da92095c4d48f8784b1f00dda4f81c28d2988 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.7Null pointer dereference in `SparseTensorSliceDataset` in TensorFlow
from 0, < 2.3.4
HIGH7.7Null pointer dereference in `SparseTensorSliceDataset` in TensorFlow
from 0, < 02cc160e29d20631de3859c6653184e3f876b9d7 | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.7Null pointer dereference in `UncompressElement` in TensorFlow
from 0, < 7bdf50bb4f5c54a4997c379092888546c97c3ebd | >= 2.3.0, < 2.3.4, >= 2.4.0, < 2.4.3
HIGH7.7Null pointer dereference in `UncompressElement` in TensorFlow
from 0, < 2.3.4
HIGH7.6Use after free in `DecodePng` in Tensorflow
from 0, < 2.5.3
HIGH7.6Integer overflow in Tensorflow
from 0, < 2.5.3
HIGH7.6Integer overflow in TFLite array creation
from 0, < 2.5.3
HIGH7.6Heap overflow in Tensorflow
from 0, < 2.5.3
HIGH7.6Undefined behavior in Tensorflow
from 0, < 2.5.3
HIGH7.6Uninitialized variable access in Tensorflow
from 0, < 2.5.3
HIGH7.6Integer overflow in Tensorflow
from 0, < 2.5.3
HIGH7.5TensorFlow segfault in array_ops.upper_bound
from 0, < 2.12.1