Invalid memory access and/or a heap buffer overflow in the TensorFlow XLA compiler in Google TensorFlow before 1.7.1 could cause a crash or read from other parts of process memory via a crafted configuration file.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| tensorflow(PyPI) | 1.1.0 | 1.7.1 | N/A |
| tensorflow-gpu(PyPI) | 1.1.0 | 1.7.1 | N/A |
CVSS Metrics