Skip to content

Instantly share code, notes, and snippets.

Show Gist options
  • Save Redmept1on/3feef7639b2bc7891d0cfda6d932adfd to your computer and use it in GitHub Desktop.
Save Redmept1on/3feef7639b2bc7891d0cfda6d932adfd to your computer and use it in GitHub Desktop.
[CVE ID]
CVE-2024-36732
[PRODUCT]
Oneflow v0.9.1
[VERSION]
Oneflow v0.9.1
[PROBLEM TYPE]
CWE-20: Improper Input Validation
[DESCRIPTION]
An issue in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) when an empty array is processed with oneflow.tensordot.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment