GMS-2022-6995: Duplicate of ./pypi/tensorflow/CVE-2022-41902.yml
The function MakeGrapplerFunctionItem
takes arguments that determine the sizes of inputs and outputs. If the inputs given are greater than or equal to the sizes of the outputs, an out-of-bounds memory read or a crash is triggered.
References
Detect and mitigate GMS-2022-6995 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →