Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Tensorflow — Vulnerabilities & Security Advisories 404

All 404 CVE vulnerabilities found in Tensorflow, with AI-generated Chinese analysis, references, and POCs.

This page is a vulnerability aggregation resource for the TensorFlow product developed by Google, focusing on general software weakness types. It compiles a comprehensive collection of security vulnerabilities, including buffer overflows, injection flaws, and improper access control issues, covering releases from the initial public launch up to the most recent updates in 2024. Visitors can efficiently track Google’s security advisories to stay informed about critical patches, understand the technical implications of common weakness classes within machine learning frameworks, and examine the historical vulnerability data associated with specific TensorFlow versions. By centralizing this information, the page aids developers and security analysts in assessing risk exposure and ensuring the integrity of deployed models. The data reflects both reported exploits and theoretical weaknesses identified through static or dynamic analysis tools. Users are encouraged to review the chronological entries to identify trends in vulnerability discovery and mitigation strategies over time. This approach supports proactive security posture management by highlighting recurring patterns in code quality and dependency management. All entries are categorized by severity and component impact to facilitate rapid decision-making during incident response or routine maintenance windows. The scope encompasses native libraries, Python APIs, and containerized distributions to provide a holistic view of the attack surface. Continuous updates ensure that the repository remains a reliable reference for compliance audits and internal security reviews.

Vendor: tensorflow

CVE IDTitleCVSSSeverityPublished
CVE-2021-29607 Incomplete validation in `SparseSparseMinimum` CWE-754 5.3 Medium2021-05-14
CVE-2021-29608 Heap OOB and null pointer dereference in `RaggedTensorToTensor` CWE-131 5.3 Medium2021-05-14
CVE-2021-29609 Incomplete validation in `SparseAdd` CWE-665 5.3 Medium2021-05-14
CVE-2021-29610 Invalid validation in `QuantizeAndDequantizeV2` CWE-665 3.6 Low2021-05-14
CVE-2021-29611 Incomplete validation in `SparseReshape` CWE-665 3.6 Low2021-05-14
CVE-2021-29612 Heap buffer overflow in `BandedTriangularSolve` CWE-120 3.6 Low2021-05-14
CVE-2021-29613 Incomplete validation in `tf.raw_ops.CTCLoss` CWE-665 6.3 Medium2021-05-14
CVE-2021-29614 Interpreter crash from `tf.io.decode_raw` CWE-665 7.1 High2021-05-14
CVE-2021-29555 Division by 0 in `FusedBatchNorm` CWE-369 2.5 Low2021-05-14
CVE-2021-29556 Division by 0 in `Reverse` CWE-369 2.5 Low2021-05-14
CVE-2021-29557 Division by 0 in `SparseMatMul` CWE-369 2.5 Low2021-05-14
CVE-2021-29558 Heap buffer overflow in `SparseSplit` CWE-787 2.5 Low2021-05-14
CVE-2021-29559 Heap OOB access in unicode ops CWE-125 2.5 Low2021-05-14
CVE-2021-29560 Heap buffer overflow in `RaggedTensorToTensor` CWE-125 2.5 Low2021-05-14
CVE-2021-29561 CHECK-fail in `LoadAndRemapMatrix` CWE-617 2.5 Low2021-05-14
CVE-2021-29562 CHECK-fail in `tf.raw_ops.IRFFT` CWE-617 2.5 Low2021-05-14
CVE-2021-29563 CHECK-fail in `tf.raw_ops.RFFT` CWE-617 2.5 Low2021-05-14
CVE-2021-29564 Null pointer dereference in `EditDistance` CWE-476 2.5 Low2021-05-14
CVE-2021-29565 Null pointer dereference in `SparseFillEmptyRows` CWE-476 2.5 Low2021-05-14
CVE-2021-29566 Heap OOB access in `Dilation2DBackpropInput` CWE-787 2.5 Low2021-05-14
CVE-2021-29567 Lack of validation in `SparseDenseCwiseMul` CWE-617 2.5 Low2021-05-14
CVE-2021-29568 Reference binding to null in `ParameterizedTruncatedNormal` CWE-824 2.5 Low2021-05-14
CVE-2021-29569 Heap out of bounds read in `RequantizationRange` CWE-125 2.5 Low2021-05-14
CVE-2021-29570 Heap out of bounds read in `MaxPoolGradWithArgmax` CWE-125 2.5 Low2021-05-14
CVE-2021-29571 Memory corruption in `DrawBoundingBoxesV2` CWE-787 4.5 Medium2021-05-14
CVE-2021-29572 Reference binding to nullptr in `SdcaOptimizer` CWE-476 2.5 Low2021-05-14
CVE-2021-29573 Division by 0 in `MaxPoolGradWithArgmax` CWE-369 2.5 Low2021-05-14
CVE-2021-29574 Undefined behavior in `MaxPool3DGradGrad` CWE-476 2.5 Low2021-05-14
CVE-2021-29575 Overflow/denial of service in `tf.raw_ops.ReverseSequence` CWE-119 2.5 Low2021-05-14
CVE-2021-29576 Heap buffer overflow in `MaxPool3DGradGrad` CWE-119 2.5 Low2021-05-14

All 404 known CVE vulnerabilities affecting Tensorflow with full Chinese analysis, references, and POCs where available.