cbcvebase.
CVE-2018-7577
published 2019-04-24

CVE-2018-7577: Memcpy parameter overlap in Google Snappy library 1.1.4, as used in Google TensorFlow before 1.7.1, could result in a crash or read from other parts of process…

high8.1CVSS 3.0
AVNACLPRNUIRSUCHINAH
Memcpy parameter overlap in Google Snappy library 1.1.4, as used in Google TensorFlow before 1.7.1, could result in a crash or read from other parts of process memory.

Affected

5 ranges
VendorProductVersion rangeFixed in
debiantensorflow
googlesnappy
googletensorflow< 1.7.11.7.1
inteloptimization_for_tensorflow>= 0 < 1.7.11.7.1
inteloptimization_for_tensorflow>= 1.1.0 < 1.7.11.7.1