Tagged “pip”
CVEs tagged pip, newest first.
4674 CVEsRSS
CVE-2021-37664High· 7.3Heap OOB in boosted trees
Heap OOB in boosted trees
CVE-2021-37671High· 7.8Reference binding to nullptr in map operations
Reference binding to nullptr in map operations
CVE-2021-37653Medium· 5.5Division by 0 in `ResourceGather`
Division by 0 in `ResourceGather`
CVE-2021-37677Medium· 5.5Missing validation in shape inference for `Dequantize`
Missing validation in shape inference for `Dequantize`
CVE-2021-37684Medium· 5.5FPE in TFLite pooling operations
FPE in TFLite pooling operations
CVE-2021-37686Medium· 5.5Infinite loop in TFLite
Infinite loop in TFLite
CVE-2021-37652High· 7.8Use after free in boosted trees creation
Use after free in boosted trees creation
CVE-2021-37687Medium· 5.5Heap OOB in TFLite's `Gather*` implementations
Heap OOB in TFLite's `Gather*` implementations
CVE-2021-37638High· 7.7Null pointer dereference in `RaggedTensorToTensor`
Null pointer dereference in `RaggedTensorToTensor`
CVE-2021-37651High· 7.1Heap buffer overflow in `FractionalAvgPoolGrad`
Heap buffer overflow in `FractionalAvgPoolGrad`
CVE-2021-37636Medium· 5.5Floating point exception in `SparseDenseCwiseDiv`
Floating point exception in `SparseDenseCwiseDiv`
CVE-2021-37646Medium· 5.5Bad alloc in `StringNGrams` caused by integer conversion
Bad alloc in `StringNGrams` caused by integer conversion
CVE-2021-37639High· 8.4Null pointer dereference and heap OOB read in operations restoring tensors
Null pointer dereference and heap OOB read in operations restoring tensors
CVE-2021-37661Medium· 5.5Crash caused by integer conversion to unsigned
Crash caused by integer conversion to unsigned
CVE-2021-37679High· 7.1Heap OOB in nested `tf.map_fn` with `RaggedTensor`s
Heap OOB in nested `tf.map_fn` with `RaggedTensor`s
CVE-2021-37663High· 7.8Incomplete validation in `QuantizeV2`
Incomplete validation in `QuantizeV2`
CVE-2021-37643High· 7.7Null pointer dereference in `MatrixDiagPartOp`
Null pointer dereference in `MatrixDiagPartOp`
CVE-2021-37650High· 7.8Segfault and heap buffer overflow in `{Experimental,}DatasetToTFRecord`
Segfault and heap buffer overflow in `{Experimental,}DatasetToTFRecord`
CVE-2021-37662High· 7.1Reference binding to nullptr in boosted trees
Reference binding to nullptr in boosted trees
CVE-2021-37692Medium· 5.5Segfault on strings tensors with mistmatched dimensions, due to Go code
Segfault on strings tensors with mistmatched dimensions, due to Go code
CVE-2021-37660Medium· 5.5Division by 0 in inplace operations
Division by 0 in inplace operations
CVE-2021-37642Medium· 5.5Division by 0 in `ResourceScatterDiv`
Division by 0 in `ResourceScatterDiv`
CVE-2021-37635High· 7.3Heap out of bounds access in sparse reduction operations
Heap out of bounds access in sparse reduction operations
CVE-2021-37680Medium· 5.5Division by zero in TFLite
Division by zero in TFLite
CVE-2021-37637High· 7.7Null pointer dereference in `CompressElement`
Null pointer dereference in `CompressElement`
CVE-2021-37647High· 7.7Null pointer dereference in `SparseTensorSliceDataset`
Null pointer dereference in `SparseTensorSliceDataset`
CVE-2021-37685Medium· 5.5Heap OOB in TFLite
Heap OOB in TFLite
CVE-2021-37645Medium· 5.5Integer overflow due to conversion to unsigned
Integer overflow due to conversion to unsigned
CVE-2021-37641High· 7.1Heap OOB in `RaggedGather`
Heap OOB in `RaggedGather`
CVE-2021-37675Medium· 5.5Division by 0 in most convolution operators
Division by 0 in most convolution operators