CVE-2021-41203 log
Source |
|
Severity | High |
Remote | No |
Type | Arbitrary code execution |
Description | In TensorFlow before version 2.6.1, an attacker can trigger undefined behavior, integer overflows, segfaults and CHECK-fail crashes if they can change saved checkpoints from outside of TensorFlow. This is because the checkpoints loading infrastructure is missing validation for invalid file formats. |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-2529 | tensorflow | 2.6.0-6 | 2.6.1-1 | High | Fixed |