tree: cf4e6a33cb0df1132a93f6894e908011f299b723 [path history] [tgz]
  1. advisory/
  2. fuzzing/
  3. README.md
tensorflow/security/README.md

TensorFlow Security Advisories

Fuzzing Status

We regularly publish security advisories about using TensorFlow.

Note: In conjunction with these security advisories, we strongly encourage TensorFlow users to read and understand TensorFlow's security model as outlined in SECURITY.md.

Advisory NumberTypeVersions affectedReported byAdditional Information
TFSA-2020-034Heap out of bounds access in MakeEdge>= 1.15.0, <= 2.3.0(discovered internally)
TFSA-2020-033CHECK-fail in LSTM with zero-length input>= 1.15.0, <= 2.3.0(discovered internally)
TFSA-2020-032Heap out of bounds read in filesystem glob matching2.4.0-rc{0,1,2,3}Aivul Team from Qihoo 360
TFSA-2020-031Write to immutable memory region>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-030Lack of validation in data format attributes>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-029Uninitialized memory access in Eigen types>= 1.15.0, <= 2.3.0(discovered internally)
TFSA-2020-028Float cast overflow undefined behavior<= 2.3(Reported on GitHub)issue report
TFSA-2020-027Segfault in tf.quantization.quantize_and_dequantize <= 2.3(Reported on GitHub)issue report
TFSA-2020-026Segfault in tf.raw_ops.Switch in eager mode2.2.0, 2.3.0Aivul Team from Qihoo 360
TFSA-2020-025Undefined behavior in dlpack.to_dlpack2.2.0, 2.3.0Aivul Team from Qihoo 360
TFSA-2020-024Memory leak in dlpack.to_dlpack2.2.0, 2.3.0Aivul Team from Qihoo 360
TFSA-2020-023Memory corruption in dlpack.to_dlpack2.2.0, 2.3.0Aivul Team from Qihoo 360
TFSA-2020-022Crash due to invalid shape of grad_values in SparseFillEmptyRowsGrad>= 1.15.0, <= 2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-021Heap buffer overflow in SparseFillEmptyRowsGrad>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-020Heap buffer overflow in weighted sparse count ops2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-019Crash due to invalid splits in SparseCountSparseOutput2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-018Heap buffer overflow due to invalid indices in SparseCountSparseOutput2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-017Abort due to invalid splits in RaggedCountSparseOutput2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-016Segfault due to invalid splits in RaggedCountSparseOutput2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-015Heap buffer overflow due to invalid splits in RaggedCountSparseOutput2.3.0Aivul Team from Qihoo 360
TFSA-2020-014Integer truncation in Shard API usage>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-013Format-string vulnerability in TensorFlow's as_string>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-012Segfault by calling session-only ops in eager mode>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-011Data leak in tf.raw_ops.StringNGrams >= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-010Incomplete validation in TensorFlow's SavedModel's constant nodes causes segfaults>= 1.15.0, <= 2.3.0Shuaike Dong, Alipay Tian Qian Security Labissue report
TFSA-2020-009Segfault and data corruption caused by negative indexing in TFLite>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-008Data corruption due to dimension mismatch in TFLite>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-007Null pointer dereference in TFLite>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360, variant analysis
TFSA-2020-006Segmentation fault and/or data corruption due to invalid TFLite model>= 1.15.0, <= 2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-005Out of bounds access in TFLite operators>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-004Out of bounds access in TFLite implementation of segment sum2.2.0, 2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-003Denial of service from TFLite implementation of segment sum2.2.0, 2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-002Out of bounds write in TFLite implementation of segment sum2.2.0, 2.3.0Aivul Team from Qihoo 360
TFSA-2020-001Segmentation fault when converting a Python string to tf.float16>= 1.12.0, <= 2.1(found internally)
TFSA-2019-002Heap buffer overflow in UnsortedSegmentSum<= 1.14(found internally)
TFSA-2019-001Null Pointer Dereference Error in Decoding GIF Files<= 1.12Baidu Security Lab
TFSA-2018-006Crafted Configuration File results in Invalid Memory Access<= 1.7Blade Team of Tencent
TFSA-2018-005Old Snappy Library Usage Resulting in Memcpy Parameter Overlap<= 1.7Blade Team of Tencent
TFSA-2018-004Checkpoint Meta File Out-of-Bounds Read<= 1.7Blade Team of Tencent
TFSA-2018-003TensorFlow Lite TOCO FlatBuffer Parsing Vulnerability<= 1.7Blade Team of Tencent
TFSA-2018-002GIF File Parsing Null Pointer Dereference Error<= 1.5Blade Team of Tencent
TFSA-2018-001BMP File Parser Out-of-bounds Read<= 1.6Blade Team of Tencent
-Out Of Bounds Read<= 1.4Blade Team of Tencentissue report