Input validation error in TensorFlow - CVE-2022-36018
Published: September 15, 2022 / Updated: May 3, 2026
TensorFlow
TensorFlow
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to improper input validation in RaggedTensorToVariant when processing an rt_nested_splits list containing tensors with ranks other than one. A remote attacker can supply crafted input to trigger a CHECK failure and cause a denial of service.