Nixpkgs Security Tracker

Login with GitHub

Suggestions search

With package: python312Packages.tensorflow-bin

Found 1 matching suggestions

View:
Compact
Detailed
updated 3 weeks, 4 days ago by @LeSuisse Activity log
  • Created automatic suggestion
  • @LeSuisse removed
    20 packages
    • haskellPackages.tensorflow-test
    • haskellPackages.tensorflow-proto
    • haskellPackages.tensorflow-opgen
    • libtensorflow
    • tensorflow-lite
    • python312Packages.tensorflow-estimator-bin
    • python313Packages.tensorflow-estimator-bin
    • python314Packages.tensorflow-estimator-bin
    • pkgsRocm.python3Packages.tensorflow-datasets
    • pkgsRocm.python3Packages.tensorflow-probability
    • tests.pkg-config.defaultPkgConfigPackages.tensorflow
    • haskellPackages.tensorflow-records-conduit
    • python312Packages.tensorflow-probability
    • python313Packages.tensorflow-probability
    • python314Packages.tensorflow-metadata
    • python313Packages.tensorflow-metadata
    • python313Packages.tensorflow-datasets
    • python312Packages.tensorflow-metadata
    • python312Packages.tensorflow-datasets
    • haskellPackages.tensorflow-records
  • @LeSuisse dismissed
TensorFlow HDF5 Library Uncontrolled Search Path Element Local Privilege Escalation Vulnerability

TensorFlow HDF5 Library Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of TensorFlow. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of plugins. The application loads plugins from an unsecured location. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of a target user. Was ZDI-CAN-25480.

References

Affected products

TensorFlow
  • ==2.17.0

Matching in nixpkgs

Ignored packages (20)

pkgs.libtensorflow

Computation using data flow graphs for scalable machine learning

pkgs.tensorflow-lite

Open source deep learning framework for on-device inference

Package maintainers

Current stable branch was never impacted