When performing the inference shape operation of Affine, Concat, MatMul, ArgMinMax, EmbeddingLookup, and Gather operators, if the input shape size is 0, it will access data outside of bounds of shape which allocated from heap buffers.
References
Link | Resource |
---|---|
https://gitee.com/mindspore/community/blob/master/security/security_advisory_list/mssa-2021-007_en.md | Patch Third Party Advisory |
Configurations
History
07 Jul 2022, 16:03
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://gitee.com/mindspore/community/blob/master/security/security_advisory_list/mssa-2021-007_en.md - Patch, Third Party Advisory | |
CWE | CWE-125 | |
CVSS |
v2 : v3 : |
v2 : 5.0
v3 : 7.5 |
CPE | cpe:2.3:a:mindspore:mindspore:*:*:*:*:*:openeuler:*:* |
27 Jun 2022, 17:22
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-06-27 17:15
Updated : 2024-02-04 22:29
NVD link : CVE-2021-33648
Mitre link : CVE-2021-33648
CVE.ORG link : CVE-2021-33648
JSON object : View
Products Affected
mindspore
- mindspore
CWE
CWE-125
Out-of-bounds Read