Segmentation Fault in LLVM Project's MLIR Component
CVE-2023-29942

5.5MEDIUM

Key Information:

Vendor

Llvm

Status
Vendor
CVE Published:
5 May 2023

What is CVE-2023-29942?

A segmentation fault vulnerability has been identified in the LLVM Project's MLIR component. This issue arises from a flaw in the type checking mechanism of mlir::Type::isamlir::LLVM::LLVMVoidType, potentially allowing for crashes or unintended behavior when interacting with specific inputs or types. Users of affected versions should investigate their implementations to mitigate the risks associated with this vulnerability.

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.