CVE-2021-29613 log

Source
Severity High
Remote No
Type Information disclosure
Description
A security issue has been found in TensorFlow before version 2.4.2. Incomplete validation in `tf.raw_ops.CTCLoss` allows an attacker to trigger an OOB read from heap.
Group Package Affected Fixed Severity Status Ticket
AVG-1962 tensorflow 2.4.1-10 2.5.0-1 Critical Fixed
References
https://github.com/tensorflow/tensorflow/security/advisories/GHSA-vvg4-vgrv-xfr7
https://github.com/tensorflow/tensorflow/commit/4504a081af71514bb1828048363e6540f797005b
https://github.com/tensorflow/tensorflow/commit/14607c0707040d775e06b6817325640cb4b5864c