← Back

CVE-2021-33648

nvd nist
Published: Jun 27, 2022Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

When performing the inference shape operation of Affine, Concat, MatMul, ArgMinMax, EmbeddingLookup, and Gather operators, if the input shape size is 0, it will access data outside of bounds of shape which allocated from heap buffers.

Affected (1)

Products: Mindspore: Mindspore
1 product
Mindspore
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 1.1.0 to 1.3.0

References (2)

Timeline

No history available yet.