GMS-2022-48: Improper Validation of Integrity Check Value in TensorFlow
The implementation of tf.sparse.split
does not fully validate the input arguments.
References
- github.com/advisories/GHSA-43q8-3fv7-pr5x
- github.com/tensorflow/tensorflow/commit/61bf91e768173b001d56923600b40d9a95a04ad5
- github.com/tensorflow/tensorflow/pull/53695
- github.com/tensorflow/tensorflow/security/advisories/GHSA-43q8-3fv7-pr5x
- github.com/tensorflow/tensorflow/security/advisories/GHSA-pgcq-h79j-2f69
Detect and mitigate GMS-2022-48 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →