CVE-2021-41224 - log back

CVE-2021-41224 created at 06 Nov 2021 00:14:30
Severity
+ High
Remote
+ Local
Type
+ Arbitrary code execution
Description
+ In TensorFlow before version 2.6.1, the implementation of SparseFillEmptyRows can be made to trigger a heap OOB access. This occurs whenever the size of indices does not match the size of values.
References
+ https://github.com/tensorflow/tensorflow/security/advisories/GHSA-rg3m-hqc5-344v
+ https://github.com/tensorflow/tensorflow/commit/67bfd9feeecfb3c61d80f0e46d89c170fbee682b
Notes