PT-2024-27144 · Oneflow · Oneflow

Published

2024-06-06

·

Updated

2024-09-18

·

CVE-2024-36736

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OneFlow versions 0.9.1
Description An issue in the oneflow.permute component of OneFlow-Inc causes an incorrect calculation when the same dimension operation is performed.
Recommendations For version 0.9.1, consider updating to a newer version that addresses this issue, as the current version may cause incorrect calculations when performing same dimension operations. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2024-36736

Affected Products

Oneflow