TensorFlow is an open source platform for machine learning. The function tf.raw_ops.LookupTableImportV2 cannot handle scalars in the values parameter and gives an NPE. A fix is included in TensorFlow version 2.12.0 and version 2.11.1.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/25xxx/CVE-2023-25672.json",
"cwe_ids": [
"CWE-476"
],
"cna_assigner": "GitHub_M"
}{
"cpe": "cpe:2.3:a:google:tensorflow:*:*:*:*:*:*:*:*",
"source": [
"CPE_RANGE",
"REFERENCES"
],
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "2.12.0"
}
]
}
[
{
"id": "CVE-2023-25672-8aec2b1b",
"target": {
"file": "tensorflow/core/ops/lookup_ops.cc"
},
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"221784214569387472950906019444732757341",
"112716813844382613693412507497205916109",
"48249079925360835465367000344285835719",
"61846931348832319899195257013552145962",
"160797757071543102939980153497859102038",
"13953475436661362870562467742136938029",
"151224885241038952881813713814703956455"
]
},
"signature_version": "v1",
"source": "https://github.com/tensorflow/tensorflow/commit/980b22536abcbbe1b4a5642fc940af33d8c19b69",
"signature_type": "Line"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-25672.json"
"2026-08-12T14:50:37Z"