CVE-2023-25673: TensorFlow has Floating Point Exception in TensorListSplit with XLA
Published Mar 24, 2023
·Updated
TensorFlow is an open source platform for machine learning. Versions prior to 2.12.0 and 2.11.1 have a Floating Point Exception in TensorListSplit with XLA. A fix is included in TensorFlow version 2.12.0 and version 2.11.1.
Affected Software
1 affected component
Google TensorFlow<2.12.0
Remediation
Event History
Mar 24, 2023
CVE Published
via MITRE·11:30 PM
Data Sourced
via MITRE·11:30 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-25673.
2
What is the severity of CVE-2023-25673?
The severity of CVE-2023-25673 is high with a CVSS score of 7.5.
3
What is the affected software?
The affected software is Google TensorFlow version 2.12.0 and versions prior to 2.12.0 and 2.11.1.
4
What is the description of CVE-2023-25673?
CVE-2023-25673 is a Floating Point Exception vulnerability in TensorListSplit with XLA in TensorFlow versions prior to 2.12.0 and 2.11.1.
5
How do I fix CVE-2023-25673?
To fix CVE-2023-25673, you need to update TensorFlow to version 2.12.0 or version 2.11.1.