First published: Wed Jul 26 2023(Updated: )
FPE in paddle.linalg.matrix_power in PaddlePaddle before 2.5.0. This flaw can cause a runtime crash and a denial of service.
Credit: paddle-security@baidu.com paddle-security@baidu.com paddle-security@baidu.com
Affected Software | Affected Version | How to fix |
---|---|---|
Paddlepaddle Paddlepaddle | <2.5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-38672 is a vulnerability in PaddlePaddle before version 2.5.0 that can cause a runtime crash and a denial of service.
CVE-2023-38672 affects PaddlePaddle before version 2.5.0 and can cause a runtime crash and a denial of service.
CVE-2023-38672 has a severity rating of high, with a CVSS score of 7.5.
CVE-2023-38672 is associated with CWE-369 (Divide By Zero).
To fix CVE-2023-38672, upgrade PaddlePaddle to version 2.5.0 or higher.