When performing the inference shape operation of the SparseToDense operator, if the number of inputs is less than three, it will access data outside of bounds of inputs which allocated from heap buffers.
References
Link | Resource |
---|---|
https://gitee.com/mindspore/community/blob/master/security/security_advisory_list/mssa-2021-005_en.md | Patch Third Party Advisory |
Configurations
History
07 Jul 2022, 16:34
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-125 | |
References | (MISC) https://gitee.com/mindspore/community/blob/master/security/security_advisory_list/mssa-2021-005_en.md - Patch, Third Party Advisory | |
CPE | cpe:2.3:a:mindspore:mindspore:*:*:*:*:*:openeuler:*:* | |
CVSS |
v2 : v3 : |
v2 : 5.0
v3 : 7.5 |
27 Jun 2022, 17:22
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-06-27 17:15
Updated : 2024-02-04 22:29
NVD link : CVE-2021-33650
Mitre link : CVE-2021-33650
CVE.ORG link : CVE-2021-33650
JSON object : View
Products Affected
mindspore
- mindspore
CWE
CWE-125
Out-of-bounds Read