<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T15:09:26.611813+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cve-2023-25666</id>
    <title>CVE-2023-25666 — TensorFlow has Floating Point Exception in AudioSpectrogram</title>
    <updated>2026-10-02T15:09:26.613514+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> tensorflow</p>
<p>TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, there is a floating point exception in AudioSpectrogram. A fix is included in TensorFlow version 2.12.0 and version 2.11.1.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cve-2023-25666"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-f637-vh3r-vfh2</id>
    <title>GHSA-f637-vh3r-vfh2 — TensorFlow has Floating Point Exception in AudioSpectrogram</title>
    <updated>2026-10-02T15:09:26.613566+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> PyPI: tensorflow, PyPI: tensorflow-cpu, PyPI: tensorflow-gpu</p>
<p>### Impact
version:2.11.0 //core/ops/audio_ops.cc:70</p>
<p>Status SpectrogramShapeFn(InferenceContext* c) { ShapeHandle input; TF_RETURN_IF_ERROR(c-&gt;WithRank(c-&gt;input(0), 2, &amp;input)); int32_t window_size; TF_RETURN_IF_ERROR(c-&gt;GetAttr("window_size", &amp;window_size)); int32_t stride; TF_RETURN_IF_ERROR(c-&gt;GetAttr("stride", &amp;stride)); .....[1]</p>
<p>DimensionHandle input_length = c-&gt;Dim(input, 0); DimensionHandle input_channels = c-&gt;Dim(input, 1);</p>
<p>DimensionHandle output_length; if (!c-&gt;ValueKnown(input_length)) { output_length = c-&gt;UnknownDim(); } else { const int64_t input_length_value = c-&gt;Value(input_length); const int64_t length_minus_window = (input_length_value - window_size); int64_t output_length_value; if (length_minus_window &lt; 0) { output_length_value = 0; } else { output_length_value = 1 + (length_minus_window / stride); .....[2] } output_length = c-&gt;MakeDim(output_length_value); }</p>
<p>Get the value of stride at [1], and the used at [2]
```python
import tensorflow as tf</p>
<p>para = {'input': tf.constant([[14.], [24.]], dtype=tf.float32), 'window_size': 1, 'stride': 0, 'magnitude_squared': False}
func = tf.raw_ops.AudioSpectrogram</p>
<p>@tf.function(jit_compile=True)
def fuzz_jit():
   y = func(**para)
   return y</p>
<p>fuzz_jit()
```</p>
<p>### Patches
We have patched the issue in GitHub commit [d0d4e779da0d0f56499c6fa5ba09f0a576cc6b14](https://github.com/tensorflow/tensorflow/commit/d0d4e779da0d0f56499c6fa5ba09f0a576cc6b14).</p>
<p>The fix will be included in TensorFlow 2.12.0. We will also cherrypick th…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-f637-vh3r-vfh2"/>
  </entry>
</feed>
