PT-2026-27272 · Llama.Cpp · Llama.Cpp
Alexanderkent
·
Publicado
2026-03-24
·
Atualizado
2026-04-30
·
CVE-2026-33298
CVSS v3.1
7.8
Alta
| Vetor | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
llama.cpp versions prior to b7824
Description
The software is susceptible to an integer overflow in the
ggml nbytes function. This allows an attacker to bypass memory validation by creating a specially crafted GGUF file with specific tensor dimensions. The ggml nbytes function returns a significantly smaller size than required, leading to a heap-based buffer overflow when the application processes the tensor. This can result in potential Remote Code Execution (RCE) through memory corruption.Recommendations
Update to version b7824 or later.
Exploit
Correção
RCE
Heap Based Buffer Overflow
Integer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Llama.Cpp