PoC: ONNX Integer Overflow in Tensor Dimension Computation

Security vulnerability PoC for responsible disclosure via huntr.com.

Vulnerability

Unchecked int64_t multiplication in tensor dimension computation allows signed integer overflow (UB), bypassing checker validation. File: onnx/checker.cc, lines 129-131; onnx/defs/tensor_proto_util.cc, lines 52-54

Researcher

Ryan — Fan Pier Labs (ryan@fanpierlabs.com)

Downloads last month

-

Downloads are not tracked for this model. How to track
Inference Providers NEW
This model isn't deployed by any Inference Provider. 🙋 Ask for provider support