{"id":"CVE-2022-35983","summary":"`CHECK` fail in `Save` and `SaveSlices` in TensorFlow","details":"TensorFlow is an open source platform for machine learning. If `Save` or `SaveSlices` is run over tensors of an unsupported `dtype`, it results in a `CHECK` fail that can be used to trigger a denial of service attack. We have patched the issue in GitHub commit 5dd7b86b84a864b834c6fa3d7f9f51c87efa99d4. The fix will be included in TensorFlow 2.10.0. We will also cherrypick this commit on TensorFlow 2.9.1, TensorFlow 2.8.1, and TensorFlow 2.7.2, as these are also affected and still in supported range. There are no known workarounds for this issue.","aliases":["BIT-tensorflow-2022-35983","GHSA-m6vp-8q9j-whx4","PYSEC-2026-1017","PYSEC-2026-3213","PYSEC-2026-3349"],"modified":"2026-08-12T13:01:20.884165Z","published":"2022-09-16T21:40:10Z","related":["openSUSE-SU-2024:12355-1"],"database_specific":{"cna_assigner":"GitHub_M","cwe_ids":["CWE-617"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/35xxx/CVE-2022-35983.json"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/35xxx/CVE-2022-35983.json"},{"type":"ADVISORY","url":"https://github.com/tensorflow/tensorflow/security/advisories/GHSA-m6vp-8q9j-whx4"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-35983"},{"type":"FIX","url":"https://github.com/tensorflow/tensorflow/commit/5dd7b86b84a864b834c6fa3d7f9f51c87efa99d4"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/tensorflow/tensorflow","events":[{"introduced":"0"},{"fixed":"dd7b8a3c1714d0052ce4b4a2fd8dcef927439a24"},{"introduced":"3f878cff5b698b82eea85db2b60d65a2e320850e"},{"fixed":"0516d4d8bced506cae97dc3cb45dbd2fe4311f26"},{"introduced":"8a20d54a3c1bfa38c03ea99a2ad3c1b0a45dfa95"},{"fixed":"d8ce9f9c301d021a69953134185ab728c1c248d3"},{"fixed":"5dd7b86b84a864b834c6fa3d7f9f51c87efa99d4"}],"database_specific":{"cpe":"cpe:2.3:a:google:tensorflow:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"2.7.2"},{"introduced":"2.8.0"},{"fixed":"2.8.1"},{"introduced":"2.9.0"},{"fixed":"2.9.1"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["v2.9.0","v2.7.1","v2.8.0","v2.7.0","v2.7.0-rc1","v2.7.0-rc0","v1.12.1","v1.9.0-rc2","v1.6.0-rc1","v1.1.0-rc2","v1.1.0-rc1","0.6.0","0.5.0"],"database_specific":{"vanir_signatures_modified":"2026-08-12T13:01:20Z","vanir_signatures":[{"id":"CVE-2022-35983-75a96311","signature_type":"Line","signature_version":"v1","source":"https://github.com/tensorflow/tensorflow/commit/5dd7b86b84a864b834c6fa3d7f9f51c87efa99d4","target":{"file":"tensorflow/core/util/tensor_slice_writer.h"},"deprecated":false,"digest":{"line_hashes":["285663364824696262345450264612816667579","79451898918791088630553569670145466863","275297581998883575205902010067484465838","256752491228392251535702369734898104476","28375647452138776971492714226719375593","74480747475184385829576068708111346814","87048941690898699014509603582056112993","158698148523997529671705225042769943300","126742014217677427174017641597783373771","140155031707856196613535696090904970027"],"threshold":0.9}},{"deprecated":false,"digest":{"line_hashes":["159433104820639472502057193448536934978","124453782306634201040116958026213080333","188363064465045207568255055410681839580","312255763357754498869072798621145870359","178350732595796200668613424684811257699","174912022514501170495914424307070134084","136245599855220604286065793016433460002","322743204930238790266711343935068139503","24192022667150653905901016307107575107","302683603485736792072660797974702530222","77683108529018114312625047616748008086","39951948375273137962544110128775179740","108587633537507210242609878158511307392"],"threshold":0.9},"id":"CVE-2022-35983-ae868f6e","signature_type":"Line","signature_version":"v1","source":"https://github.com/tensorflow/tensorflow/commit/5dd7b86b84a864b834c6fa3d7f9f51c87efa99d4","target":{"file":"tensorflow/core/util/tensor_slice_writer_test.cc"}},{"digest":{"function_hash":"95939587665312143007092663155108475940","length":723},"id":"CVE-2022-35983-db4ac573","signature_type":"Function","signature_version":"v1","source":"https://github.com/tensorflow/tensorflow/commit/5dd7b86b84a864b834c6fa3d7f9f51c87efa99d4","target":{"file":"tensorflow/core/util/tensor_slice_writer.cc","function":"TensorSliceWriter::MaxBytesPerElement"},"deprecated":false},{"target":{"function":"TensorSliceWriter::SaveData","file":"tensorflow/core/util/tensor_slice_writer.h"},"deprecated":false,"digest":{"function_hash":"145901202900995999411668524881594164917","length":595},"id":"CVE-2022-35983-df1cfbd1","signature_type":"Function","signature_version":"v1","source":"https://github.com/tensorflow/tensorflow/commit/5dd7b86b84a864b834c6fa3d7f9f51c87efa99d4"},{"deprecated":false,"digest":{"line_hashes":["220910569147422665444936414863268201186","197274871655880028199174118347533557590","277770755518070830989906621916996826287","54723311966014567196117989457698325347","116780104149130419801471144917842877900","187288760696007652175300781618707164048","107188304899314057569503923071478439328","199787615866195340812536168781476675453","318176693588067192528590213091833185568","12384075290684499854472908257035980072"],"threshold":0.9},"id":"CVE-2022-35983-e89ea834","signature_type":"Line","signature_version":"v1","source":"https://github.com/tensorflow/tensorflow/commit/5dd7b86b84a864b834c6fa3d7f9f51c87efa99d4","target":{"file":"tensorflow/core/util/tensor_slice_writer.cc"}}],"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-35983.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}