Show filters
972 Total Results
Displaying 111-120 of 972
Sort by:
Attacker Value
Unknown
CVE-2022-36011
Disclosure Date: September 16, 2022 (last updated February 24, 2025)
TensorFlow is an open source platform for machine learning. When `mlir::tfg::ConvertGenericFunctionToFunctionDef` is given empty function attributes, it gives a null dereference. We have patched the issue in GitHub commit 1cf45b831eeb0cab8655c9c7c5d06ec6f45fc41b. The fix will be included in TensorFlow 2.10.0. We will also cherrypick this commit on TensorFlow 2.9.1, TensorFlow 2.8.1, and TensorFlow 2.7.2, as these are also affected and still in supported range. There are no known workarounds for this issue.
0
Attacker Value
Unknown
CVE-2022-36000
Disclosure Date: September 16, 2022 (last updated February 24, 2025)
TensorFlow is an open source platform for machine learning. When `mlir::tfg::ConvertGenericFunctionToFunctionDef` is given empty function attributes, it gives a null dereference. We have patched the issue in GitHub commit aed36912609fc07229b4d0a7b44f3f48efc00fd0. The fix will be included in TensorFlow 2.10.0. We will also cherrypick this commit on TensorFlow 2.9.1, TensorFlow 2.8.1, and TensorFlow 2.7.2, as these are also affected and still in supported range. There are no known workarounds for this issue.
0
Attacker Value
Unknown
CVE-2022-40759
Disclosure Date: September 16, 2022 (last updated February 24, 2025)
A NULL pointer dereference issue in the TEE_MACCompareFinal function in Samsung mTower through 0.3.0 allows a trusted application to trigger a Denial of Service (DoS) by invoking the function TEE_MACCompareFinal with a NULL pointer for the parameter operation.
0
Attacker Value
Unknown
CVE-2022-35965
Disclosure Date: September 16, 2022 (last updated February 24, 2025)
TensorFlow is an open source platform for machine learning. If `LowerBound` or `UpperBound` is given an empty`sorted_inputs` input, it results in a `nullptr` dereference, leading to a segfault that can be used to trigger a denial of service attack. We have patched the issue in GitHub commit bce3717eaef4f769019fd18e990464ca4a2efeea. The fix will be included in TensorFlow 2.10.0. We will also cherrypick this commit on TensorFlow 2.9.1, TensorFlow 2.8.1, and TensorFlow 2.7.2, as these are also affected and still in supported range. There are no known workarounds for this issue.
0
Attacker Value
Unknown
CVE-2022-40738
Disclosure Date: September 15, 2022 (last updated February 24, 2025)
An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_DescriptorListWriter::Action in Core/Ap4Descriptor.h, called from AP4_EsDescriptor::WriteFields and AP4_Expandable::Write.
0
Attacker Value
Unknown
CVE-2022-40476
Disclosure Date: September 14, 2022 (last updated February 24, 2025)
A null pointer dereference issue was discovered in fs/io_uring.c in the Linux kernel before 5.15.62. A local user could use this flaw to crash the system or potentially cause a denial of service.
0
Attacker Value
Unknown
CVE-2022-3202
Disclosure Date: September 14, 2022 (last updated February 24, 2025)
A NULL pointer dereference flaw in diFree in fs/jfs/inode.c in Journaled File System (JFS)in the Linux kernel. This could allow a local attacker to crash the system or leak kernel internal information.
0
Attacker Value
Unknown
CVE-2022-38497
Disclosure Date: September 13, 2022 (last updated February 24, 2025)
LIEF commit 365a16a was discovered to contain a segmentation violation via the component CoreFile.tcc:69.
0
Attacker Value
Unknown
CVE-2022-38307
Disclosure Date: September 13, 2022 (last updated February 24, 2025)
LIEF commit 5d1d643 was discovered to contain a segmentation violation via the function LIEF::MachO::SegmentCommand::file_offset() at /MachO/SegmentCommand.cpp.
0
Attacker Value
Unknown
CVE-2022-37797
Disclosure Date: September 12, 2022 (last updated February 24, 2025)
In lighttpd 1.4.65, mod_wstunnel does not initialize a handler function pointer if an invalid HTTP request (websocket handshake) is received. It leads to null pointer dereference which crashes the server. It could be used by an external attacker to cause denial of service condition.
0