VDB
EN

PYSEC-2021-398

상세

TensorFlow is an open source platform for machine learning. In affected versions the shape inference functions for the `QuantizeAndDequantizeV*` operations can trigger a read outside of bounds of heap allocated array. The fix will be included in TensorFlow 2.7.0. We will also cherrypick this commit on TensorFlow 2.6.1, TensorFlow 2.5.2, and TensorFlow 2.4.4, as these are also affected and still in supported range.

이 버전이 영향받나요?

사용 중인 패키지 버전을 입력하면 즉시 평가합니다.

영향 패키지

PyPI / tensorflow
최초 영향 버전: 0 수정 버전: 7cf73a2274732c9d82af51c2bc2cf90d13cd7e6d
수정 pip install --upgrade 'tensorflow>=7cf73a2274732c9d82af51c2bc2cf90d13cd7e6d'

참고