Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-7425 | TensorFlow is an open source platform for machine learning. An input `encoded` that is not a valid `CompositeTensorVariant` tensor will trigger a segfault in `tf.raw_ops.CompositeTensorVariantToComponents`. We have patched the issue in GitHub commits bf594d08d377dc6a3354d9fdb494b32d45f91971 and 660ce5a89eb6766834bdc303d2ab3902aef99d3d. The fix will be included in TensorFlow 2.11. We will also cherrypick this commit on TensorFlow 2.10.1, 2.9.3, and TensorFlow 2.8.4, as these are also affected and still in supported range. |
Github GHSA |
GHSA-rjx6-v474-2ch9 | Segfault in `CompositeTensorVariantToComponents` |
Tue, 22 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-04-22T16:02:49.290Z
Reserved: 2022-09-30T00:00:00.000Z
Link: CVE-2022-41909
Updated: 2024-08-03T12:56:38.393Z
Status : Modified
Published: 2022-11-18T22:15:22.223
Modified: 2024-11-21T07:24:02.807
Link: CVE-2022-41909
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA