PT-2023-20224 · Google · Tensorflow

Yu Tian

·

Published

2023-03-24

·

Updated

2024-03-06

·

CVE-2023-25663

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions TensorFlow versions prior to 2.12.0 and 2.11.1
Description The issue occurs when ctx->step containter() is a null pointer, causing the Lookup function to be executed with a null pointer. This can be triggered in certain scenarios, such as when using the tf.raw ops.TensorArrayConcatV2 function with specific parameters, including handle, flow in, dtype, and element shape except0. The estimated number of potentially affected devices worldwide is not specified.
Recommendations For versions prior to 2.12.0, update to version 2.12.0 to resolve the issue. For versions prior to 2.11.1, update to version 2.11.1 to resolve the issue. As a temporary workaround, consider avoiding the use of the tf.raw ops.TensorArrayConcatV2 function with a null ctx->step containter() until a patch is applied.

Exploit

Fix

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

AZL-31215
AZL-35308
BIT-TENSORFLOW-2023-25663
CVE-2023-25663
GHSA-64JG-WJWW-7C5W

Affected Products

Tensorflow