Vulnerability Description
In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, by controlling the `fill` argument of tf.strings.as_string, a malicious attacker is able to trigger a format string vulnerability due to the way the internal format use in a `printf` call is constructed. This may result in segmentation fault. The issue is patched in commit 33be22c65d86256e6826666662e40dbdfe70ee83, and is released in TensorFlow versions 1.15.4, 2.0.3, 2.1.2, 2.2.1, or 2.3.1.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tensorflow | < 1.15.4 | |
| Opensuse | Leap | 15.2 |
Related Weaknesses (CWE)
References
- http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00065.htmlMailing ListThird Party Advisory
- https://github.com/tensorflow/tensorflow/commit/33be22c65d86256e6826666662e40dbdPatchThird Party Advisory
- https://github.com/tensorflow/tensorflow/releases/tag/v2.3.1Third Party Advisory
- https://github.com/tensorflow/tensorflow/security/advisories/GHSA-xmq7-7fxm-rr79ExploitThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00065.htmlMailing ListThird Party Advisory
- https://github.com/tensorflow/tensorflow/commit/33be22c65d86256e6826666662e40dbdPatchThird Party Advisory
- https://github.com/tensorflow/tensorflow/releases/tag/v2.3.1Third Party Advisory
- https://github.com/tensorflow/tensorflow/security/advisories/GHSA-xmq7-7fxm-rr79ExploitThird Party Advisory
FAQ
What is CVE-2020-15203?
CVE-2020-15203 is a vulnerability with a CVSS score of 7.5 (HIGH). In Tensorflow before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, by controlling the `fill` argument of tf.strings.as_string, a malicious attacker is able to trigger a format string vulnerability d...
How severe is CVE-2020-15203?
CVE-2020-15203 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-15203?
Check the references section above for vendor advisories and patch information. Affected products include: Google Tensorflow, Opensuse Leap.