目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1000 CNY

100.0%

tensorflow 厂商漏洞列表 / CVE 中文分析 403

tensorflow 厂商相关 403 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。

TensorFlow 是 Google 开发的开源机器学习框架,广泛用于构建和训练深度学习模型。其历史漏洞多涉及内存安全缺陷、拒绝服务及越权访问,部分源于底层 C++ 组件的缓冲区溢出或逻辑错误。近期关注点在于模型权重泄露及对抗样本攻击风险。尽管核心库安全性较高,但集成环境中的配置失误常导致数据暴露。建议及时更新版本并遵循最小权限原则,以缓解潜在的安全威胁。

上位製品 tensorflow: tensorflow keras
CVE IDタイトルCVSS深刻度公開日
CVE-2022-35992 `CHECK` fail in `TensorListFromTensor` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35991 `CHECK` fail in `TensorListScatter` and `TensorListScatterV2` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35999 `CHECK` fail in `Conv2DBackpropInput` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35998 `CHECK` fail in `EmptyTensorList` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35997 `CHECK` fail in `tf.sparse.cross` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35995 `CHECK` fail in `AudioSummaryV2` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-36016 `CHECK`-fail in `tensorflow::full_type::SubstituteFromAttrs` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-36005 `CHECK` fail in `FakeQuantWithMinMaxVarsGradient` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-36004 `CHECK` fail in `tf.random.gamma` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-36003 `CHECK` fail in `RandomPoissonV2` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-36002 `CHECK` fail in `Unbatch` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-36001 `CHECK` fail in `DrawBoundingBoxes` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-36026 `CHECK` fail in `QuantizeAndDequantizeV3` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-36018 `CHECK` fail in `RaggedTensorToVariant` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-36019 `CHECK` fail in `FakeQuantWithMinMaxVarsPerChannel` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35990 `CHECK` fail in `FakeQuantWithMinMaxVarsPerChannelGradient` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35986 Segfault in `RaggedBincount` in TensorFlow — tensorflowCWE-20 5.9 Medium2022-09-16
CVE-2022-35987 `CHECK` fail in `DenseBincount` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35985 `CHECK` fail in `LRNGrad` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35984 `CHECK` fail in `ParameterizedTruncatedNormal` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35983 `CHECK` fail in `Save` and `SaveSlices` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35989 `CHECK` fail in `MaxPool` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35988 `CHECK` fail in `tf.linalg.matrix_rank` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35982 Segfault in `SparseBincount` in TensorFlow — tensorflowCWE-20 5.9 Medium2022-09-16
CVE-2022-35981 `CHECK` fail in `FractionalMaxPoolGrad` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16
CVE-2022-35979 Segfault in `QuantizedRelu` and `QuantizedRelu6` — tensorflowCWE-20 5.9 Medium2022-09-16
CVE-2022-35974 Segfault in `QuantizeDownAndShrinkRange` in TensorFlow — tensorflowCWE-20 5.9 Medium2022-09-16
CVE-2022-35972 Segfault in `QuantizedBiasAdd` in TensorFlow — tensorflowCWE-20 5.9 Medium2022-09-16
CVE-2022-35973 Segfault in `QuantizedMatMul` in TensorFlow — tensorflowCWE-20 5.9 Medium2022-09-16
CVE-2022-35971 `CHECK` fail in `FakeQuantWithMinMaxVars` in TensorFlow — tensorflowCWE-617 5.9 Medium2022-09-16

本页汇总了 tensorflow 厂商截至目前公开的全部 403 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。