漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
ReDoS in Apache MXNet RTC Module
Vulnerability Description
A regular expression used in Apache MXNet (incubating) is vulnerable to a potential denial-of-service by excessive resource consumption. The bug could be exploited when loading a model in Apache MXNet that has a specially crafted operator name that would cause the regular expression evaluation to use excessive resources to attempt a match. This issue affects Apache MXNet versions prior to 1.9.1.
CVSS Information
N/A
Vulnerability Type
未加控制的资源消耗(资源穷尽)
Vulnerability Title
Apache MXNet 安全漏洞
Vulnerability Description
Apache MXNet是美国阿帕奇(Apache)基金会的一个开源深度学习软件框架。用于训练及部署深度神经网络。 Apache MXNet (incubating) 1.9.1 之前版本存在安全漏洞,该漏洞源于使用的正则表达式容易因过度消耗资源而受到潜在的拒绝服务攻击,当在Apache MXNet中加载具有特制运算符名称的模型时,该错误可能会被利用,这会导致正则表达式评估使用过多的资源来尝试匹配。
CVSS Information
N/A
Vulnerability Type
N/A