tree: 13a7e04877041f1761c7e79ef55fc6384df06019 [path history] [tgz]
  1. advisory/
  2. fuzzing/
  3. README.md
tensorflow/security/README.md

TensorFlow Security Advisories

Fuzzing Status

We regularly publish security advisories about using TensorFlow.

Note: In conjunction with these security advisories, we strongly encourage TensorFlow users to read and understand TensorFlow's security model as outlined in SECURITY.md.

Advisory NumberTypeVersions affectedReported byAdditional Information
TFSA-2020-026Segfault in tf.raw_ops.Switch in eager mode2.2.0, 2.3.0Aivul Team from Qihoo 360
TFSA-2020-025Undefined behavior in dlpack.to_dlpack2.2.0, 2.3.0Aivul Team from Qihoo 360
TFSA-2020-024Memory leak in dlpack.to_dlpack2.2.0, 2.3.0Aivul Team from Qihoo 360
TFSA-2020-023Memory corruption in dlpack.to_dlpack2.2.0, 2.3.0Aivul Team from Qihoo 360
TFSA-2020-022Crash due to invalid shape of grad_values in SparseFillEmptyRowsGrad>= 1.15.0, <= 2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-021Heap buffer overflow in SparseFillEmptyRowsGrad>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-020Heap buffer overflow in weighted sparse count ops2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-019Crash due to invalid splits in SparseCountSparseOutput2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-018Heap buffer overflow due to invalid indices in SparseCountSparseOutput2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-017Abort due to invalid splits in RaggedCountSparseOutput2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-016Segfault due to invalid splits in RaggedCountSparseOutput2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-015Heap buffer overflow due to invalid splits in RaggedCountSparseOutput2.3.0Aivul Team from Qihoo 360
TFSA-2020-014Integer truncation in Shard API usage>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-013Format-string vulnerability in TensorFlow's as_string>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-012Segfault by calling session-only ops in eager mode>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-011Data leak in tf.raw_ops.StringNGrams >= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-010Incomplete validation in TensorFlow‘s SavedModel’s constant nodes causes segfaults>= 1.15.0, <= 2.3.0Shuaike Dong, Alipay Tian Qian Security Labissue report
TFSA-2020-009Segfault and data corruption caused by negative indexing in TFLite>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-008Data corruption due to dimension mismatch in TFLite>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-007Null pointer dereference in TFLite>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360, variant analysis
TFSA-2020-006Segmentation fault and/or data corruption due to invalid TFLite model>= 1.15.0, <= 2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-005Out of bounds access in TFLite operators>= 1.15.0, <= 2.3.0Aivul Team from Qihoo 360
TFSA-2020-004Out of bounds access in TFLite implementation of segment sum2.2.0, 2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-003Denial of service from TFLite implementation of segment sum2.2.0, 2.3.0(variant analysis, Aivul Team from Qihoo 360)
TFSA-2020-002Out of bounds write in TFLite implementation of segment sum2.2.0, 2.3.0Aivul Team from Qihoo 360
TFSA-2020-001Segmentation fault when converting a Python string to tf.float16>= 1.12.0, <= 2.1(found internally)
TFSA-2019-002Heap buffer overflow in UnsortedSegmentSum<= 1.14(found internally)
TFSA-2019-001Null Pointer Dereference Error in Decoding GIF Files<= 1.12Baidu Security Lab
TFSA-2018-006Crafted Configuration File results in Invalid Memory Access<= 1.7Blade Team of Tencent
TFSA-2018-005Old Snappy Library Usage Resulting in Memcpy Parameter Overlap<= 1.7Blade Team of Tencent
TFSA-2018-004Checkpoint Meta File Out-of-Bounds Read<= 1.7Blade Team of Tencent
TFSA-2018-003TensorFlow Lite TOCO FlatBuffer Parsing Vulnerability<= 1.7Blade Team of Tencent
TFSA-2018-002GIF File Parsing Null Pointer Dereference Error<= 1.5Blade Team of Tencent
TFSA-2018-001BMP File Parser Out-of-bounds Read<= 1.6Blade Team of Tencent
-Out Of Bounds Read<= 1.4Blade Team of Tencentissue report