CVE-2022-29203
Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implementation of `tf.raw_ops.SpaceToBatchND` (in all backends such as XLA and handwritten kernels) is vulnerable to an integer overflow: The result of this integer overflow is used to allocate the…
Does this matter?
Lower severity and a low EPSS score (0.34%). Track it; it rarely justifies an emergency change on its own.
Description
TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implementation of `tf.raw_ops.SpaceToBatchND` (in all backends such as XLA and handwritten kernels) is vulnerable to an integer overflow: The result of this integer overflow is used to allocate the output tensor, hence we get a denial of service via a `CHECK`-failure (assertion failure), as in TFSA-2021-198. Versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4 contain a patch for this issue.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.34% probability · 27th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-190
- Affected
- google/tensorflow
- Source
- security-advisories@github.com
References
- https://github.com/tensorflow/tensorflow/blob/master/tensorflow/security/advisory/tfsa-2021-198.mdPatch, Third Party Advisory
- https://github.com/tensorflow/tensorflow/commit/acd56b8bcb72b163c834ae4f18469047b001fadfPatch, Third Party Advisory
- https://github.com/tensorflow/tensorflow/releases/tag/v2.6.4Release Notes, Third Party Advisory
- https://github.com/tensorflow/tensorflow/releases/tag/v2.7.2Release Notes, Third Party Advisory
- https://github.com/tensorflow/tensorflow/releases/tag/v2.8.1Release Notes, Third Party Advisory
- https://github.com/tensorflow/tensorflow/releases/tag/v2.9.0Release Notes, Third Party Advisory
- https://github.com/tensorflow/tensorflow/security/advisories/GHSA-jjm6-4vf7-cjh4Exploit, Patch, Third Party Advisory
- https://github.com/tensorflow/tensorflow/blob/master/tensorflow/security/advisory/tfsa-2021-198.mdPatch, Third Party Advisory
- https://github.com/tensorflow/tensorflow/commit/acd56b8bcb72b163c834ae4f18469047b001fadfPatch, Third Party Advisory
- https://github.com/tensorflow/tensorflow/releases/tag/v2.6.4Release Notes, Third Party Advisory
- https://github.com/tensorflow/tensorflow/releases/tag/v2.7.2Release Notes, Third Party Advisory
- https://github.com/tensorflow/tensorflow/releases/tag/v2.8.1Release Notes, Third Party Advisory
- https://github.com/tensorflow/tensorflow/releases/tag/v2.9.0Release Notes, Third Party Advisory
- https://github.com/tensorflow/tensorflow/security/advisories/GHSA-jjm6-4vf7-cjh4Exploit, Patch, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.