Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-18581

Опубликовано: 03 авг. 2026
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

A vulnerability was determined in ggml-org llama.cpp e15efe0. Affected by this issue is some unknown functionality of the file common/jinja/parser.cpp of the component Jinja Minja Template Parser. Executing a manipulation with the input {{9|9|{ can lead to reachable assertion. The attack requires local access. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet.

A flaw was found in llama.cpp. A local attacker can exploit this vulnerability by manipulating input to the Jinja Minja Template Parser component. This manipulation can lead to a reachable assertion, causing the application to terminate unexpectedly. This results in a Denial of Service (DoS).

Отчет

This flaw has a Moderate impact. The Jinja/Minja chat-template parser in llama.cpp (common/jinja/parser.cpp) does not validate the syntactic correctness of template input; a local user who supplies a malformed template such as {{9|9|{ triggers a reachable assertion that aborts the process, resulting in a denial of service. Exploitation requires local access and the ability to submit a chat template to the parser, and the impact is limited to availability of the affected process. No Red Hat enterprise product ships llama.cpp; only the Fedora community packages llama-cpp and python-llama-cpp-python are affected, for which community trackers have been filed for maintainer action.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-1286
https://bugzilla.redhat.com/show_bug.cgi?id=2510191llama.cpp: llama.cpp: Denial of Service due to input manipulation in Jinja Minja Template Parser

EPSS

Процентиль: 2%
0.00112
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.3
ubuntu
около 2 месяцев назад

A vulnerability was determined in ggml-org llama.cpp e15efe0. Affected by this issue is some unknown functionality of the file common/jinja/parser.cpp of the component Jinja Minja Template Parser. Executing a manipulation with the input {{9|9|{ can lead to reachable assertion. The attack requires local access. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 3.3
nvd
около 2 месяцев назад

A vulnerability was determined in ggml-org llama.cpp e15efe0. Affected by this issue is some unknown functionality of the file common/jinja/parser.cpp of the component Jinja Minja Template Parser. Executing a manipulation with the input {{9|9|{ can lead to reachable assertion. The attack requires local access. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 3.3
debian
около 2 месяцев назад

A vulnerability was determined in ggml-org llama.cpp e15efe0. Affected ...

CVSS3: 3.3
github
около 2 месяцев назад

A vulnerability was determined in ggml-org llama.cpp e15efe0. Affected by this issue is some unknown functionality of the file common/jinja/parser.cpp of the component Jinja Minja Template Parser. Executing a manipulation with the input {{9|9|{ can lead to reachable assertion. The attack requires local access. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet.

EPSS

Процентиль: 2%
0.00112
Низкий

5.5 Medium

CVSS3

Уязвимость CVE-2026-18581