CVE-2020-26270

critical
Published 2020-12-10 · Modified 2023-12-06
CVSS v3
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
CVSS v2
VIR risk
9.5

Description

In affected versions of TensorFlow running an LSTM/GRU model where the LSTM/GRU layer receives an input with zero-length results in a CHECK failure when using the CUDA backend. This can result in a query-of-death vulnerability, via denial of service, if users can control the input to the layer. This is fixed in versions 1.15.5, 2.0.4, 2.1.3, 2.2.2, 2.3.2, and 2.4.0.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2020-26270

vendor Authored 2026-05-27

Vendor advisory: arch — https://security.archlinux.org/ASA-202012-22

OS impact

OSVersionStatusFixed in
arch archfixed2.4.0-1
debian debianforkyfixed0
debian debiansidfixed0

Package impact

EcosystemPackageVulnerableFixed
python PyPItensorflow-gpu>=2.3.0,<2.3.22.3.2
python PyPItensorflow<1.15.51.15.5
python PyPItensorflow>=2.0.0,<2.0.42.0.4
python PyPItensorflow>=2.1.0,<2.1.32.1.3
python PyPItensorflow>=2.2.0,<2.2.22.2.2
python PyPItensorflow>=2.3.0,<2.3.22.3.2
python PyPItensorflow-cpu<1.15.51.15.5
python PyPItensorflow-cpu>=2.0.0,<2.0.42.0.4
python PyPItensorflow-cpu>=2.1.0,<2.1.32.1.3
python PyPItensorflow-cpu>=2.2.0,<2.2.22.2.2
python PyPItensorflow-cpu>=2.3.0,<2.3.22.3.2
python PyPItensorflow-gpu<1.15.51.15.5
python PyPItensorflow-gpu>=2.0.0,<2.0.42.0.4
python PyPItensorflow-gpu>=2.1.0,<2.1.32.1.3
python PyPItensorflow-gpu>=2.2.0,<2.2.22.2.2
python PyPItensorflow<14755416e364f17fb1870882fa778c7fec7f16e3||>=2.3.0,<2.3.214755416e364f17fb1870882fa778c7fec7f16e3
python PyPItensorflow-cpu<14755416e364f17fb1870882fa778c7fec7f16e3||>=2.3.0,<2.3.214755416e364f17fb1870882fa778c7fec7f16e3
python PyPItensorflow-gpu<14755416e364f17fb1870882fa778c7fec7f16e3||>=2.3.0,<2.3.214755416e364f17fb1870882fa778c7fec7f16e3

References

Verify integrity in audit chain (admin only). AS-IS.