CVE-2021-29617 - log back

CVE-2021-29617 edited at 14 May 2021 21:58:02
Type
- Unknown
+ Denial of service
CVE-2021-29617 edited at 14 May 2021 21:32:33
Severity
- Unknown
+ Low
Remote
- Unknown
+ Local
Description
+ A security issue has been found in TensorFlow before version 2.4.2. An attacker can cause a denial of service via `CHECK`-fail in `tf.strings.substr` with invalid arguments.
References
+ https://github.com/tensorflow/tensorflow/security/advisories/GHSA-mmq6-q8r3-48fm
+ https://github.com/tensorflow/tensorflow/commit/890f7164b70354c57d40eda52dcdd7658677c09f
+ https://github.com/tensorflow/issues/46974
+ https://github.com/tensorflow/issues/46900
CVE-2021-29617 created at 14 May 2021 20:37:16
Severity
+ Unknown
Remote
+ Unknown
Type
+ Unknown
Description
References
Notes