[Git][security-tracker-team/security-tracker][master] tensorflow updates

Moritz Muehlenhoff (@jmm) jmm at debian.org
Tue Sep 2 08:36:24 BST 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
7f93e584 by Moritz Muehlenhoff at 2025-09-02T09:35:57+02:00
tensorflow updates

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -232078,19 +232078,34 @@ CVE-2023-25672 (TensorFlow is an open source platform for machine learning. The
 	NOTE: https://github.com/tensorflow/tensorflow/security/advisories/GHSA-94mm-g2mv-8p7r
 	NOTE: https://github.com/tensorflow/tensorflow/commit/980b22536abcbbe1b4a5642fc940af33d8c19b69 (v2.12.0-rc0)
 CVE-2023-25671 (TensorFlow is an open source platform for machine learning. There is o ...)
-	- tensorflow <itp> (bug #804612)
+	- tensorflow <not-affected> (Fixed before initial upload to the archive)
+	NOTE: https://github.com/tensorflow/tensorflow/security/advisories/GHSA-j5w9-hmfh-4cr6
+	NOTE: https://github.com/tensorflow/tensorflow/commit/2eedc8f676d2c3b8be9492e547b2bc814c10b367 (v2.12.0-rc0)
+	NOTE: https://github.com/tensorflow/tensorflow/commit/760322a71ac9033e122ef1f4b1c62813021e5938 (v2.12.0-rc0)
 CVE-2023-25670 (TensorFlow is an open source platform for machine learning. Versions p ...)
-	- tensorflow <itp> (bug #804612)
+	- tensorflow <not-affected> (Fixed before initial upload to the archive)
+	NOTE: https://github.com/tensorflow/tensorflow/security/advisories/GHSA-49rq-hwc3-x77w
+	NOTE: https://github.com/tensorflow/tensorflow/commit/8a47a39d9697969206d23a523c977238717e8727 (v2.12.0-rc0)
 CVE-2023-25669 (TensorFlow is an open source platform for machine learning. Prior to v ...)
-	- tensorflow <itp> (bug #804612)
+	- tensorflow <not-affected> (Fixed before initial upload to the archive)
+	NOTE: https://github.com/tensorflow/tensorflow/security/advisories/GHSA-rcf8-g8jv-vg6p
+	NOTE: https://github.com/tensorflow/tensorflow/commit/1295ae4dbb52fe06b19733b0257e2340d7b63b8d (v2.12.0-rc0)
 CVE-2023-25668 (TensorFlow is an open source platform for machine learning. Attackers  ...)
-	- tensorflow <itp> (bug #804612)
+	- tensorflow <not-affected> (Fixed before initial upload to the archive)
+	NOTE: https://github.com/tensorflow/tensorflow/security/advisories/GHSA-gw97-ff7c-9v96
+	NOTE: https://github.com/tensorflow/tensorflow/commit/7b174a0f2e40ff3f3aa957aecddfd5aaae35eccb (v2.12.0-rc0)
 CVE-2023-25667 (TensorFlow is an open source platform for machine learning. Prior to v ...)
-	- tensorflow <itp> (bug #804612)
+	- tensorflow <not-affected> (Fixed before initial upload to the archive)
+	NOTE: https://github.com/tensorflow/tensorflow/security/advisories/GHSA-fqm2-gh8w-gr68
+	NOTE: https://github.com/tensorflow/tensorflow/commit/8dc723fcdd1a6127d6c970bd2ecb18b019a1a58d (v2.12.0-rc0)
 CVE-2023-25666 (TensorFlow is an open source platform for machine learning. Prior to v ...)
-	- tensorflow <itp> (bug #804612)
+	- tensorflow <not-affected> (Fixed before initial upload to the archive)
+	NOTE: https://github.com/tensorflow/tensorflow/security/advisories/GHSA-f637-vh3r-vfh2
+	NOTE: https://github.com/tensorflow/tensorflow/commit/d0d4e779da0d0f56499c6fa5ba09f0a576cc6b14 (v2.12.0-rc0)
 CVE-2023-25665 (TensorFlow is an open source platform for machine learning. Prior to v ...)
-	- tensorflow <itp> (bug #804612)
+	- tensorflow <not-affected> (Fixed before initial upload to the archive)
+	NOTE: https://github.com/tensorflow/tensorflow/security/advisories/GHSA-558h-mq8x-7q9g
+	NOTE: https://github.com/tensorflow/tensorflow/commit/5e0ecfb42f5f65629fd7a4edd6c4afe7ff0feb04 (v2.12.0-rc0)
 CVE-2023-25664 (TensorFlow is an open source platform for machine learning. Prior to v ...)
 	- tensorflow <itp> (bug #804612)
 CVE-2023-25663 (TensorFlow is an open source platform for machine learning. Prior to v ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7f93e584f5a30ca44beffcdf6307cc7a3bcf9ff2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/7f93e584f5a30ca44beffcdf6307cc7a3bcf9ff2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250902/46149229/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list