漏洞标题
在Tensorflow中的` Grappler 的`SafeToRemoveIdentity` 过程中`CHECK`- Failures
漏洞描述信息
在Tensorflow中的Grappler的`SafeToRemoveIdentity`期间的`CHECK`失败
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
漏洞类别
N/A
漏洞标题
`CHECK`-failures during Grappler's `SafeToRemoveIdentity` in Tensorflow
漏洞描述信息
Tensorflow is an Open Source Machine Learning Framework. The Grappler optimizer in TensorFlow can be used to cause a denial of service by altering a `SavedModel` such that `SafeToRemoveIdentity` would trigger `CHECK` failures. The fix will be included in TensorFlow 2.8.0. We will also cherrypick this commit on TensorFlow 2.7.1, TensorFlow 2.6.3, and TensorFlow 2.5.3, as these are also affected and still in supported range.
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
漏洞类别
可达断言
漏洞标题
Google Tensorflow 安全漏洞
漏洞描述信息
Google TensorFlow是美国谷歌(Google)公司的一套用于机器学习的端到端开源平台。 Tensorflow 存在安全漏洞,该漏洞源于TensorFlow中的格斗器优化器可以通过修改SavedModel来导致拒绝服务,这样SafeToRemoveIdentity就会触发CHECK失败。
CVSS信息
N/A
漏洞类别
其他