NULL pointer dereference in TensorFlow - CVE-2021-29592
Published: May 13, 2021 / Updated: May 4, 2026
TensorFlow
TensorFlow
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a null pointer dereference in the TFLite Reshape operator when processing a model with a null-buffer-backed 1-dimensional shape tensor. A remote attacker can supply a specially crafted model to cause a denial of service.