CVE-2023-25658: TensorFlow vulnerable to Out-of-Bounds Read in GRUBlockCellGrad
Published Mar 24, 2023
·Updated
TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, an out of bounds read is in GRUBlockCellGrad. A fix is included in TensorFlow 2.12.0 and 2.11.1.
Affected Software
1 affected component
Google TensorFlow<2.12.0
Remediation
Event History
Mar 24, 2023
CVE Published
via MITRE·11:42 PM
Data Sourced
via MITRE·11:42 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is TensorFlow?
TensorFlow is an open source platform for machine learning.
2
What is the vulnerability ID?
The vulnerability ID is CVE-2023-25658.
3
What is the severity of CVE-2023-25658?
The severity of CVE-2023-25658 is high with a CVSS score of 7.5.
4
What is the affected software?
The affected software is TensorFlow versions prior to 2.12.0 and 2.11.1.
5
How can I fix CVE-2023-25658?
To fix CVE-2023-25658, update TensorFlow to version 2.12.0 or 2.11.1.