QID 981550
QID 981550: Python (pip) Security Update for tensorflow-gpu (GHSA-mhhc-q96p-mfm9)
Security update has been released for tensorflow-gpu,tensorflow,tensorflow-cpu to fix the vulnerability.
Note: The preceding description block is extracted directly from the security advisory. Using automation, we have attempted to clean and format it as much as possible without introducing additional issues.
The strided slice implementation in TFLite has a logic bug which can allow an attacker to trigger an infinite loop. This arises from newly introduced support for [ellipsis in axis definition](https://github.com/tensorflow/tensorflow/blob/149562d49faa709ea80df1d99fc41d005b81082a/tensorflow/lite/kernels/strided_slice.cc#L103-L122):
```cc
for (int i = 0; i < effective_dims;) {
if ((1 << i) & op_context->params->ellipsis_mask) {
// ...
int ellipsis_end_idx =
std::min(i + 1 + num_add_axis + op_context->input_dims - begin_count,
effective_dims);
// ...
for (; i < ellipsis_end_idx; ++i) {
// ...
}
continue;
}
// ...
++i;
}
```
An attacker can craft a model such that `ellipsis_end_idx` is smaller than `i` (e.g., always negative). In this case, the inner loop does not increase `i` and the `continue` statement causes execution to skip over the preincrement at the end of the outer loop.
The fix will be included in TensorFlow 2.6.0. This is the only affected version.
- GHSA-mhhc-q96p-mfm9 -
github.com/advisories/GHSA-mhhc-q96p-mfm9
CVEs related to QID 981550
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-mhhc-q96p-mfm9 | tensorflow |
|
|
| GHSA-mhhc-q96p-mfm9 | tensorflow-cpu |
|
|
| GHSA-mhhc-q96p-mfm9 | tensorflow-gpu |
|