Vulnerability Description
When the Reduce operator run operation is executed, if there is a value of 0 in the parameter axis_sizes element, it will cause a division by 0 exception.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mindspore | Mindspore | >= 1.0.0, < 1.3.0 |
Related Weaknesses (CWE)
References
- https://gitee.com/mindspore/community/blob/master/security/security_advisory_lisPatchThird Party Advisory
- https://gitee.com/mindspore/community/blob/master/security/security_advisory_lisPatchThird Party Advisory
FAQ
What is CVE-2021-33652?
CVE-2021-33652 is a vulnerability with a CVSS score of 7.5 (HIGH). When the Reduce operator run operation is executed, if there is a value of 0 in the parameter axis_sizes element, it will cause a division by 0 exception.
How severe is CVE-2021-33652?
CVE-2021-33652 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-33652?
Check the references section above for vendor advisories and patch information. Affected products include: Mindspore Mindspore.