CVE-2023-29941: Medium severity llvm llvm vulnerability
Published May 5, 2023
·Updated
llvm-project commit a0138390 was discovered to contain a segmentation fault via the component matchAndRewriteSortOp<mlir::sparsetensor::SortOp>(mlir::sparsetensor::SortOp.
Affected Software
1 affected component
LLVM LLVM=2023-01-12
Remediation
Patch Available
Event History
May 5, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
03:15 PM
Description
Data Sourced
via NVD·03:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-29941?
CVE-2023-29941 has been classified as a medium-level vulnerability due to the potential for application crashes.
2
How do I fix CVE-2023-29941?
To mitigate CVE-2023-29941, users should update to the latest version of LLVM that addresses the segmentation fault.
3
What components are affected by CVE-2023-29941?
CVE-2023-29941 affects the matchAndRewriteSortOp component in the MLIR sparse tensor module of LLVM.
4
Can CVE-2023-29941 be exploited remotely?
CVE-2023-29941 is not considered a remote exploit but can lead to local application crashes under certain conditions.
5
What is the nature of the issue in CVE-2023-29941?
CVE-2023-29941 involves a segmentation fault that occurs within a specific function in the LLVM project.