Out-of-bounds read in TensorFlow - CVE-2021-41211
Published: November 5, 2021 / Updated: May 3, 2026
TensorFlow
TensorFlow
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to an out-of-bounds read in the QuantizeV2 shape inference code when processing a QuantizeV2 operation with a negative axis value less than -1. A remote attacker can supply a crafted axis value to cause a denial of service.