CVE-2023-38676 – Segfault in paddle.dot
https://notcve.org/view.php?id=CVE-2023-38676
Nullptr in paddle.dot in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service. Puntero Null en paddle.dot en PaddlePaddle antes de 2.6.0. Este fallo puede provocar un bloqueo del tiempo de ejecución y una denegación de servicio. • https://github.com/PaddlePaddle/Paddle/blob/develop/security/advisory/pdsa-2023-008.md • CWE-476: NULL Pointer Dereference •
CVE-2023-38675 – FPE in paddle.linalg.matrix_rank
https://notcve.org/view.php?id=CVE-2023-38675
FPE in paddle.linalg.matrix_rank in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service. FPE en paddle.linalg.matrix_rank en PaddlePaddle antes de 2.6.0. Este fallo puede provocar un bloqueo del tiempo de ejecución y una denegación de servicio. • https://github.com/PaddlePaddle/Paddle/blob/develop/security/advisory/pdsa-2023-007.md • CWE-369: Divide By Zero •
CVE-2023-38674 – FPE in paddle.nanmedian
https://notcve.org/view.php?id=CVE-2023-38674
FPE in paddle.nanmedian in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service. FPE en paddle.nanmedian en PaddlePaddle antes de 2.6.0. Este fallo puede provocar un bloqueo del tiempo de ejecución y una denegación de servicio. • https://github.com/PaddlePaddle/Paddle/blob/develop/security/advisory/pdsa-2023-006.md • CWE-369: Divide By Zero •
CVE-2023-38673 – Command injection in fs.py
https://notcve.org/view.php?id=CVE-2023-38673
PaddlePaddle before 2.5.0 has a command injection in fs.py. This resulted in the ability to execute arbitrary commands on the operating system. • https://github.com/PaddlePaddle/Paddle/blob/develop/security/advisory/pdsa-2023-005.md • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •
CVE-2023-38672 – FPE in paddle.linalg.matrix_power
https://notcve.org/view.php?id=CVE-2023-38672
FPE in paddle.trace in PaddlePaddle before 2.5.0. This flaw can cause a runtime crash and a denial of service. • https://github.com/PaddlePaddle/Paddle/blob/develop/security/advisory/pdsa-2023-004.md • CWE-369: Divide By Zero •