Vulnerability Details CVE-2021-33647
When performing the inference shape operation of the Tile operator, if the input data type is not int or int32, it will access data outside of bounds of heap allocated buffers.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 52.9%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2021-33647
-
cpe:2.3:a:mindspore:mindspore:0.7.0
-
cpe:2.3:a:mindspore:mindspore:1.0.0
-
cpe:2.3:a:mindspore:mindspore:1.0.1
-
cpe:2.3:a:mindspore:mindspore:1.1.0
-
cpe:2.3:a:mindspore:mindspore:1.1.1
-
cpe:2.3:a:mindspore:mindspore:1.2.0
-
cpe:2.3:a:mindspore:mindspore:1.2.1