tensorflow vulnerabilities
CVEs whose affected-version data names the tensorflow package (pip). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
419 CVEsRSS
CVE-2021-37656High· 7.1Reference binding to nullptr in `RaggedTensorToSparse`
Reference binding to nullptr in `RaggedTensorToSparse`
CVE-2021-37682Medium· 4.4Use of unitialized value in TFLite
Use of unitialized value in TFLite
CVE-2021-37690Medium· 6.6Use after free and segfault in shape inference functions
Use after free and segfault in shape inference functions
CVE-2021-37668Medium· 5.5FPE in `tf.raw_ops.UnravelIndex`
FPE in `tf.raw_ops.UnravelIndex`
CVE-2021-37654High· 7.3Heap OOB and CHECK fail in `ResourceGather`
Heap OOB and CHECK fail in `ResourceGather`
CVE-2021-37691Medium· 5.5FPE in LSH in TFLite
FPE in LSH in TFLite
CVE-2021-37644Medium· 5.5`std::abort` raised from `TensorListReserve`
`std::abort` raised from `TensorListReserve`
CVE-2021-37673Medium· 5.5`CHECK`-fail in `MapStage`
`CHECK`-fail in `MapStage`
CVE-2021-29618Low· 2.5Crash in `tf.transpose` with complex inputs
Crash in `tf.transpose` with complex inputs
CVE-2021-29541Low· 2.5Null pointer dereference in `StringNGrams`
Null pointer dereference in `StringNGrams`
CVE-2021-29525Low· 2.5Division by 0 in `Conv2DBackpropInput`
Division by 0 in `Conv2DBackpropInput`
CVE-2021-29527Low· 2.5Division by 0 in `QuantizedConv2D`
Division by 0 in `QuantizedConv2D`
CVE-2021-29613Medium· 6.3Incomplete validation in `tf.raw_ops.CTCLoss`
Incomplete validation in `tf.raw_ops.CTCLoss`
CVE-2021-29524Low· 2.5Division by 0 in `Conv2DBackpropFilter`
Division by 0 in `Conv2DBackpropFilter`
CVE-2021-29615Low· 2.5Stack overflow in `ParseAttrValue` with nested tensors
Stack overflow in `ParseAttrValue` with nested tensors
CVE-2021-29546Low· 2.5Division by 0 in `QuantizedBiasAdd`
Division by 0 in `QuantizedBiasAdd`
CVE-2021-29535Low· 2.5Heap buffer overflow in `QuantizedMul`
Heap buffer overflow in `QuantizedMul`
CVE-2021-29592Medium· 4.4Null pointer dereference in TFLite's `Reshape` operator
Null pointer dereference in TFLite's `Reshape` operator
CVE-2021-29605High· 7.1Integer overflow in TFLite memory allocation
Integer overflow in TFLite memory allocation
CVE-2021-29521Low· 2.5Segfault in SparseCountSparseOutput
Segfault in SparseCountSparseOutput
CVE-2021-29614High· 7.1Interpreter crash from `tf.io.decode_raw`
Interpreter crash from `tf.io.decode_raw`
CVE-2021-29537Low· 2.5Heap buffer overflow in `QuantizedResizeBilinear`
Heap buffer overflow in `QuantizedResizeBilinear`
CVE-2021-29528Low· 2.5Division by 0 in `QuantizedMul`
Division by 0 in `QuantizedMul`
CVE-2021-29557Low· 2.5Division by 0 in `SparseMatMul`
Division by 0 in `SparseMatMul`
CVE-2021-29584Low· 2.5CHECK-fail due to integer overflow
CHECK-fail due to integer overflow
CVE-2021-29540Low· 2.5Heap buffer overflow in `Conv2DBackpropFilter`
Heap buffer overflow in `Conv2DBackpropFilter`
CVE-2021-29530Low· 2.5Invalid validation in `SparseMatrixSparseCholesky`
Invalid validation in `SparseMatrixSparseCholesky`
CVE-2021-29580Low· 2.5Undefined behavior and `CHECK`-fail in `FractionalMaxPoolGrad`
Undefined behavior and `CHECK`-fail in `FractionalMaxPoolGrad`
CVE-2021-29549Low· 2.5Division by 0 in `QuantizedAdd`
Division by 0 in `QuantizedAdd`
CVE-2021-29619Low· 2.5Segfault in `tf.raw_ops.SparseCountSparseOutput`
Segfault in `tf.raw_ops.SparseCountSparseOutput`