CVE-2023-25666: TensorFlow has Floating Point Exception in AudioSpectrogram
Published Mar 24, 2023
·Updated
TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, there is a floating point exception in AudioSpectrogram. A fix is included in TensorFlow version 2.12.0 and version 2.11.1.
Affected Software
1 affected component
Google TensorFlow<2.12.0
Remediation
Event History
Mar 24, 2023
CVE Published
via MITRE·11:39 PM
Data Sourced
via MITRE·11:39 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is TensorFlow?
TensorFlow is an open source platform for machine learning.
2
What is the vulnerability ID of this TensorFlow vulnerability?
The vulnerability ID is CVE-2023-25666.
3
What is the severity rating of CVE-2023-25666?
The severity rating of CVE-2023-25666 is 7.5 (high).
4
How does CVE-2023-25666 affect TensorFlow?
CVE-2023-25666 affects TensorFlow versions prior to 2.12.0 and 2.11.1.
5
How can I fix CVE-2023-25666 in TensorFlow?
To fix CVE-2023-25666, you should upgrade TensorFlow to version 2.12.0 or version 2.11.1.