NULL pointer dereference in TensorFlow - CVE-2021-41217
Published: November 5, 2021 / Updated: May 3, 2026
TensorFlow
TensorFlow
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a null pointer dereference in the control flow graph builder when processing a model containing an Exit node that is not preceded by a paired Enter node. A remote attacker can supply a crafted TensorFlow model to cause a denial of service.