PT-2022-19458 · Google · Tensorflow

Neophytos Christou

·

Published

2022-05-20

·

Updated

2024-03-06

·

CVE-2022-29206

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions TensorFlow versions prior to 2.9.0 TensorFlow versions prior to 2.8.1 TensorFlow versions prior to 2.7.2 TensorFlow versions prior to 2.6.4
Description The implementation of tf.raw ops.SparseTensorDenseAdd does not fully validate the input arguments, which can lead to a reference being bound to a nullptr during kernel execution, resulting in undefined behavior.
Recommendations For versions prior to 2.9.0, update to version 2.9.0 or later. For versions prior to 2.8.1, update to version 2.8.1 or later. For versions prior to 2.7.2, update to version 2.7.2 or later. For versions prior to 2.6.4, update to version 2.6.4 or later. As a temporary workaround, consider avoiding the use of tf.raw ops.SparseTensorDenseAdd until a patch is applied.

Exploit

Fix

NULL Pointer Dereference

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BIT-TENSORFLOW-2022-29206
CVE-2022-29206
GHSA-RC9W-5C64-9VQQ

Affected Products

Tensorflow