Tagged “osv”
CVEs tagged osv, newest first.
5752 CVEsRSS
CVE-2021-37689High· 7.8Null pointer dereference in TFLite MLIR optimizations
Null pointer dereference in TFLite MLIR optimizations
CVE-2021-37666High· 7.8Reference binding to nullptr in `RaggedTensorToVariant`
Reference binding to nullptr in `RaggedTensorToVariant`
CVE-2021-37688High· 7.8Null pointer dereference in TFLite
Null pointer dereference in TFLite
CVE-2021-37659High· 7.3Reference binding to nullptr and heap OOB in binary cwise ops
Reference binding to nullptr and heap OOB in binary cwise ops
CVE-2021-29937Critical· 9.8Free of uninitialized memory in telemetry
Free of uninitialized memory in telemetry
CVE-2020-15254High· 8.1crossbeam-channel Undefined Behavior before v0.4.4
crossbeam-channel Undefined Behavior before v0.4.4
CVE-2021-32810Critical· 9.8crossbeam-deque Data Race before v0.7.4 and v0.8.1
crossbeam-deque Data Race before v0.7.4 and v0.8.1
CVE-2021-21299Medium· 4.8HTTP Request Smuggling in hyper
HTTP Request Smuggling in hyper
CVE-2020-15093High· 8.6Improper verification of signature threshold in tough
Improper verification of signature threshold in tough
CVE-2021-37648High· 7.8Incorrect validation of `SaveV2` inputs
Incorrect validation of `SaveV2` inputs
CVE-2021-37667High· 7.8Reference binding to nullptr in unicode encoding
Reference binding to nullptr in unicode encoding
CVE-2021-37669Medium· 5.5Crash in NMS ops caused by integer conversion to unsigned
Crash in NMS ops caused by integer conversion to unsigned
CVE-2021-37665High· 7.8Incomplete validation in MKL requantization
Incomplete validation in MKL requantization
CVE-2021-37676High· 7.8Reference binding to nullptr in shape inference
Reference binding to nullptr in shape inference
CVE-2021-37683Medium· 5.5FPE in TFLite division operations
FPE in TFLite division operations
CVE-2021-37678Critical· 9.3PoCArbitrary code execution due to YAML deserialization
Arbitrary code execution due to YAML deserialization
CVE-2021-37664High· 7.3Heap OOB in boosted trees
Heap OOB in boosted trees
CVE-2021-37671High· 7.8Reference binding to nullptr in map operations
Reference binding to nullptr in map operations
CVE-2021-37653Medium· 5.5Division by 0 in `ResourceGather`
Division by 0 in `ResourceGather`
CVE-2021-37677Medium· 5.5Missing validation in shape inference for `Dequantize`
Missing validation in shape inference for `Dequantize`
CVE-2021-37684Medium· 5.5FPE in TFLite pooling operations
FPE in TFLite pooling operations
CVE-2021-37686Medium· 5.5Infinite loop in TFLite
Infinite loop in TFLite
CVE-2021-37652High· 7.8Use after free in boosted trees creation
Use after free in boosted trees creation
CVE-2021-37687Medium· 5.5Heap OOB in TFLite's `Gather*` implementations
Heap OOB in TFLite's `Gather*` implementations
CVE-2021-37638High· 7.7Null pointer dereference in `RaggedTensorToTensor`
Null pointer dereference in `RaggedTensorToTensor`
CVE-2021-37651High· 7.1Heap buffer overflow in `FractionalAvgPoolGrad`
Heap buffer overflow in `FractionalAvgPoolGrad`
CVE-2021-32629High· 7.2Memory access due to code generation flaw in Cranelift module
Memory access due to code generation flaw in Cranelift module
CVE-2021-37636Medium· 5.5Floating point exception in `SparseDenseCwiseDiv`
Floating point exception in `SparseDenseCwiseDiv`
CVE-2021-37646Medium· 5.5Bad alloc in `StringNGrams` caused by integer conversion
Bad alloc in `StringNGrams` caused by integer conversion
CVE-2021-37639High· 8.4Null pointer dereference and heap OOB read in operations restoring tensors
Null pointer dereference and heap OOB read in operations restoring tensors