{"id":"CVE-2022-23559","aliases":["BIT-tensorflow-2022-23559","GHSA-98p5-x8x4-c9m5","PYSEC-2022-123","PYSEC-2022-68","PYSEC-2026-3146"],"url":"https://o3.security/vulnerability/CVE-2022-23559","summary":"Integer overflow in TFLite","details":"Tensorflow is an Open Source Machine Learning Framework. An attacker can craft a TFLite model that would cause an integer overflow in embedding lookup operations. Both `embedding_size` and `lookup_size` are products of values provided by the user. Hence, a malicious user could trigger overflows in the multiplication. In certain scenarios, this can then result in heap OOB read/write. Users are advised to upgrade to a patched version.","published":"2022-02-04T22:32:37Z","modified":"2026-08-12T12:59:53.013667Z","cvss":{"score":8.8,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":1,"affectedPackages":[{"ecosystem":"PyPI","name":"tensorflow","fixedVersion":"2.5.3"},{"ecosystem":"PyPI","name":"tensorflow","fixedVersion":"2.6.3"},{"ecosystem":"PyPI","name":"tensorflow","fixedVersion":"2.7.1"},{"ecosystem":"PyPI","name":"tensorflow-cpu","fixedVersion":"2.5.3"},{"ecosystem":"PyPI","name":"tensorflow-cpu","fixedVersion":"2.6.3"},{"ecosystem":"PyPI","name":"tensorflow-cpu","fixedVersion":"2.7.1"},{"ecosystem":"PyPI","name":"tensorflow-gpu","fixedVersion":"2.5.3"},{"ecosystem":"PyPI","name":"tensorflow-gpu","fixedVersion":"2.6.3"},{"ecosystem":"PyPI","name":"tensorflow-gpu","fixedVersion":"2.7.1"}],"fix":{"url":"https://github.com/tensorflow/tensorflow/commit/1de49725a5fc4e48f1a3b902ec3599ee99283043","label":"tensorflow/tensorflow@1de4972"},"references":[{"type":"WEB","url":"https://github.com/tensorflow/tensorflow/blob/ca6f96b62ad84207fbec580404eaa7dd7403a550/tensorflow/lite/kernels/embedding_lookup_sparse.cc#L179-L189"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/23xxx/CVE-2022-23559.json"},{"type":"ADVISORY","url":"https://github.com/tensorflow/tensorflow/security/advisories/GHSA-98p5-x8x4-c9m5"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-23559"},{"type":"FIX","url":"https://github.com/tensorflow/tensorflow/commit/1de49725a5fc4e48f1a3b902ec3599ee99283043"},{"type":"FIX","url":"https://github.com/tensorflow/tensorflow/commit/a4e401da71458d253b05e41f28637b65baf64be4"},{"type":"FIX","url":"https://github.com/tensorflow/tensorflow/commit/f19be71717c497723ba0cea0379e84f061a75e01"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-12T12:59:53.013667Z"}}