Input validation error in TensorFlow - CVE-2022-36017
Published: September 15, 2022 / Updated: May 3, 2026
TensorFlow
TensorFlow
Description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper input validation in the Requantize operation when processing input_min, input_max, requested_output_min, and requested_output_max tensors of nonzero rank. A local user can supply crafted tensors to trigger a segmentation fault and cause a denial of service.