|
210811
|
6.3 |
MEDIUM
Network
|
google
|
tensorflow
|
In Tensorflow before version 2.3.1, the `SparseCountSparseOutput` implementation does not validate that the input arguments form a valid sparse tensor. In particular, there is no validation that the …
|
-
|
CVE-2020-15197
|
2024-11-21 14:05 |
2020-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210812
|
9.9 |
CRITICAL
Network
|
google
|
tensorflow
|
In Tensorflow version 2.3.0, the `SparseCountSparseOutput` and `RaggedCountSparseOutput` implementations don't validate that the `weights` tensor has the same shape as the data. The check exists for …
|
CWE-125
Out-of-bounds Read
|
CVE-2020-15196
|
2024-11-21 14:05 |
2020-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210813
|
5.3 |
MEDIUM
Network
|
google opensuse
|
tensorflow leap
|
In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `SparseFillEmptyRowsGrad` implementation has incomplete validation of the shapes of its arguments. Although `reverse_index_map…
|
-
|
CVE-2020-15194
|
2024-11-21 14:05 |
2020-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210814
|
7.1 |
HIGH
Network
|
google opensuse
|
tensorflow leap
|
In Tensorflow before versions 2.2.1 and 2.3.1, the implementation of `dlpack.to_dlpack` can be made to use uninitialized memory resulting in further memory corruption. This is because the pybind11 gl…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2020-15193
|
2024-11-21 14:05 |
2020-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210815
|
4.3 |
MEDIUM
Network
|
google opensuse
|
tensorflow leap
|
In Tensorflow before versions 2.2.1 and 2.3.1, if a user passes a list of strings to `dlpack.to_dlpack` there is a memory leak following an expected validation failure. The issue occurs because the `…
|
CWE-20
Improper Input Validation
|
CVE-2020-15192
|
2024-11-21 14:05 |
2020-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210816
|
5.3 |
MEDIUM
Network
|
google opensuse
|
tensorflow leap
|
In Tensorflow before versions 2.2.1 and 2.3.1, if a user passes an invalid argument to `dlpack.to_dlpack` the expected validations will cause variables to bind to `nullptr` while setting a `status` v…
|
CWE-252
Unchecked Return Value
|
CVE-2020-15191
|
2024-11-21 14:05 |
2020-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210817
|
5.3 |
MEDIUM
Network
|
google opensuse
|
tensorflow leap
|
In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, the `tf.raw_ops.Switch` operation takes as input a tensor and a boolean and outputs two tensors. Depending on the boolean value, o…
|
-
|
CVE-2020-15190
|
2024-11-21 14:05 |
2020-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210818
|
9.8 |
CRITICAL
Network
|
broadcom
|
fabric_operating_system
|
Rest API in Brocade Fabric OS v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c is vulnerable to multiple instances of reflected input.
|
NVD-CWE-noinfo
|
CVE-2020-15374
|
2024-11-21 14:05 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210819
|
9.8 |
CRITICAL
Network
|
broadcom
|
fabric_operating_system
|
Multiple buffer overflow vulnerabilities in REST API in Brocade Fabric OS versions v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c could allow remote unauthenticated attackers to perform va…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-15373
|
2024-11-21 14:05 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210820
|
5.5 |
MEDIUM
Local
|
broadcom
|
fabric_operating_system
|
A vulnerability in the command-line interface in Brocade Fabric OS before Brocade Fabric OS v8.2.2a1, 8.2.2c, v7.4.2g, v8.2.0_CBN3, v8.2.1e, v8.1.2k, v9.0.0, could allow a local authenticated attacke…
|
CWE-913
Improper Control of Dynamically-Managed Code Resources
|
CVE-2020-15372
|
2024-11-21 14:05 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|