Out-of-bounds write in TensorFlow - CVE-2021-29566
Published: May 13, 2021 / Updated: May 4, 2026
TensorFlow
TensorFlow
Description
The vulnerability allows a remote attacker to write outside the bounds of heap allocated arrays.
The vulnerability exists due to out-of-bounds write in tf.raw_ops.Dilation2DBackpropInput when processing invalid arguments. A remote attacker can pass crafted input tensors and parameters to write outside the bounds of heap allocated arrays.