Input validation error in TensorFlow - CVE-2021-41203
Published: November 5, 2021 / Updated: May 3, 2026
TensorFlow
TensorFlow
Description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper input validation in the checkpoint loading infrastructure when parsing modified checkpoint files. A local user can supply a specially crafted checkpoint file to cause a denial of service.
Exploitation requires the ability to change saved checkpoints from outside of TensorFlow.