Skip to content

Copybara import of the project: - #11080

Open
copybara-service[bot] wants to merge 1 commit into
masterfrom
test_971398840
Open

Copybara import of the project:#11080
copybara-service[bot] wants to merge 1 commit into
masterfrom
test_971398840

Conversation

@copybara-service

Copy link
Copy Markdown
Contributor

Copybara import of the project:

--
61f8d81 by destro4evr-rgb destro4evr@proton.me:

litert/xnnpack: guard against 0D scalar axes/begin tensor in Mean and Slice

MeanOperation::ToXnnpack() accesses axes_info.shape[0] and
SliceOperation::ToXnnpack() accesses begin_info.shape[0] without checking
whether the shape vector is empty. A crafted TFLite model that declares
either tensor as a 0D scalar produces an empty shape vector; operator
on an empty std::vector dereferences null -> SIGSEGV during XNNPACK subgraph
compilation at model load time. Add shape.empty() guards matching the pattern
already used in ExpandDimsOperation::ToXnnpack() and in the keep_dims branch
of Mean() in litert/tensor/arithmetic.h.
FUTURE_COPYBARA_INTEGRATE_REVIEW=#11056 from destro4evr-rgb:fix/litert-mean-slice-shape-empty-null-deref 61f8d81

--
61f8d81 by destro4evr-rgb <destro4evr@proton.me>:

litert/xnnpack: guard against 0D scalar axes/begin tensor in Mean and Slice

MeanOperation::ToXnnpack() accesses axes_info.shape[0] and
SliceOperation::ToXnnpack() accesses begin_info.shape[0] without checking
whether the shape vector is empty. A crafted TFLite model that declares
either tensor as a 0D scalar produces an empty shape vector; operator[](0)
on an empty std::vector dereferences null -> SIGSEGV during XNNPACK subgraph
compilation at model load time. Add shape.empty() guards matching the pattern
already used in ExpandDimsOperation::ToXnnpack() and in the keep_dims branch
of Mean() in litert/tensor/arithmetic.h.
FUTURE_COPYBARA_INTEGRATE_REVIEW=#11056 from destro4evr-rgb:fix/litert-mean-slice-shape-empty-null-deref 61f8d81
PiperOrigin-RevId: 971398840
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant