CVE-2026-14647: onnx onnxruntime old.cc convPoolShapeInference_opset19 out-of-bounds
A weakness has been identified in onnx up to 1.21.x. This vulnerability affects the function convPoolShapeInferenceopset19 of the file onnx/defs/nn/old.cc of the component onnxruntime. This manipulation causes out-of-bounds read. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be used for attacks. Patch name: a7bf3a0f1d18bb62575236ef6e4944980c40e045. It is recommended to apply a patch to fix this issue.
Other sources
onnx onnxruntime old.cc convPoolShapeInferenceopset19 out-of-bounds
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 2.2.2-16 - Upgrade
Upgrade
onnxruntimeto a version that resolves this vulnerability.Patch a7bf3a0f1d18bb62575236ef6e4944980c40e045
Event History
Frequently Asked Questions
What is the severity of CVE-2026-14647?
The severity of CVE-2026-14647 is classified as medium with a score of 4.3.
How do I fix CVE-2026-14647?
To fix CVE-2026-14647, upgrade to the latest version of onnxruntime that addresses this vulnerability.
What component is affected by CVE-2026-14647?
CVE-2026-14647 affects the onnxruntime component, specifically the convPoolShapeInference_opset19 function.
What type of vulnerability is CVE-2026-14647?
CVE-2026-14647 is classified as a buffer overflow vulnerability.
Can CVE-2026-14647 be exploited remotely?
Yes, CVE-2026-14647 can be exploited remotely.