cbcvebase.
CVE-2018-10055
published 2019-04-24

CVE-2018-10055: Invalid memory access and/or a heap buffer overflow in the TensorFlow XLA compiler in Google TensorFlow before 1.7.1 could cause a crash or read from other…

high8.1CVSS 3.0
AVNACLPRNUIRSUCHINAH
Invalid memory access and/or a heap buffer overflow in the TensorFlow XLA compiler in Google TensorFlow before 1.7.1 could cause a crash or read from other parts of process memory via a crafted configuration file.

Affected

4 ranges
VendorProductVersion rangeFixed in
debiantensorflow
googletensorflow< 1.7.11.7.1
inteloptimization_for_tensorflow>= 0 < 1.7.11.7.1
inteloptimization_for_tensorflow>= 1.1.0 < 1.7.11.7.1