GHSA-mfg7-x5m7-6p8w
Dashboard / Vulnerabilities / GHSA-mfg7-x5m7-6p8w
GHSA-mfg7-x5m7-6p8w
Summary: NULL Pointer Dereference in Google TensorFlow
Details: NULL pointer dereference in Google TensorFlow before 1.12.1 could cause a denial of service via an invalid GIF file.
References: https://nvd.nist.gov/vuln/detail/CVE-2019-9635, https://github.com/tensorflow/tensorflow/commit/e41cb124cd0b325821af85cdacd9d8a12e206418, https://github.com/advisories/GHSA-mfg7-x5m7-6p8w, https://github.com/pypa/advisory-database/tree/main/vulns/tensorflow-cpu/PYSEC-2019-228.yaml, https://github.com/pypa/advisory-database/tree/main/vulns/tensorflow-gpu/PYSEC-2019-235.yaml, https://github.com/pypa/advisory-database/tree/main/vulns/tensorflow/PYSEC-2019-210.yaml, https://github.com/tensorflow/tensorflow, https://github.com/tensorflow/tensorflow/blob/master/tensorflow/security/advisory/tfsa-2019-001.md
Affected packages
Package
Name: tensorflow
Purl: pkg:pypi/tensorflow
Affected ranges
Type: ECOSYSTEM
Events:
