Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Patch: TensorFlow has a heap out-of-buffer read vulnerability in the QuantizeAndDequantize operation #126

Open
wants to merge 2 commits into
base: main
Choose a base branch
from

Commits on Apr 3, 2023

  1. Bump tensorflow from 2.9.3 to 2.11.1 in /images

    Bumps [tensorflow](https://github.com/tensorflow/tensorflow) from 2.9.3 to 2.11.1.
    - [Release notes](https://github.com/tensorflow/tensorflow/releases)
    - [Changelog](https://github.com/tensorflow/tensorflow/blob/master/RELEASE.md)
    - [Commits](tensorflow/tensorflow@v2.9.3...v2.11.1)
    
    ---
    updated-dependencies:
    - dependency-name: tensorflow
      dependency-type: direct:production
    ...
    
    Signed-off-by: dependabot[bot] <[email protected]>
    dependabot[bot] committed Apr 3, 2023
    Configuration menu
    Copy the full SHA
    421487f View commit details
    Browse the repository at this point in the history
  2. Merge pull request #1 from alwell-kevin/dependabot/pip/images/tensorf…

    …low-2.11.1
    
    Bump tensorflow from 2.9.3 to 2.11.1 in /images
    alwell-kevin committed Apr 3, 2023
    Configuration menu
    Copy the full SHA
    7f47e90 View commit details
    Browse the repository at this point in the history