Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-43630

Опубликовано: 06 авг. 2026
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

llama.cpp builds b5702 through b7653 contain an out-of-bounds read vulnerability in the recurrent memory state restore path that allows attackers with write access to the slot save directory to read memory past the end of the allocated cells array. Attackers can craft a malicious slot file with an oversized seq_id value to trigger an out-of-bounds read that leaks heap data including pointer values into server logs, defeating ASLR protections and facilitating further exploitation.

A flaw was found in llama.cpp. This out-of-bounds read vulnerability in the recurrent memory state restore path allows attackers with write access to the slot save directory to read memory beyond its allocated boundary. By crafting a malicious slot file with an oversized sequence identifier (seq_id) value, an attacker can trigger this flaw, leading to the leakage of heap data, including pointer values, into server logs. This information disclosure can defeat Address Space Layout Randomization (ASLR) protections and facilitate further exploitation.

Отчет

Exploitation requires local write access to the slot storage directory to introduce crafted state files prior to a restoration operation. The impact is strictly bounded to low confidentiality loss from heap memory leakage into application logs and low availability impact from potential process crashes (C:L, I:N, A:L), with zero impact on data or system integrity. Deployments enforcing write-restricted filesystem permissions on session state directories or running purely stateless inference workloads are completely unaffected.

Меры по смягчению последствий

Restrict write access to the llama.cpp slot save directory. Ensure that only authorized users or processes have write permissions to this directory. If the recurrent memory state feature is not in use, ensure the slot save directory is either removed or configured with highly restrictive permissions to prevent the placement of malicious files.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2512355llama.cpp: llama.cpp: Information disclosure via out-of-bounds read

EPSS

Процентиль: 37%
0.00453
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
8 дней назад

llama.cpp builds b5702 through b7653 contain an out-of-bounds read vulnerability in the recurrent memory state restore path that allows attackers with write access to the slot save directory to read memory past the end of the allocated cells array. Attackers can craft a malicious slot file with an oversized seq_id value to trigger an out-of-bounds read that leaks heap data including pointer values into server logs, defeating ASLR protections and facilitating further exploitation.

CVSS3: 6.5
nvd
8 дней назад

llama.cpp builds b5702 through b7653 contain an out-of-bounds read vulnerability in the recurrent memory state restore path that allows attackers with write access to the slot save directory to read memory past the end of the allocated cells array. Attackers can craft a malicious slot file with an oversized seq_id value to trigger an out-of-bounds read that leaks heap data including pointer values into server logs, defeating ASLR protections and facilitating further exploitation.

CVSS3: 6.5
debian
8 дней назад

llama.cpp builds b5702 through b7653 contain an out-of-bounds read vul ...

CVSS3: 6.5
github
8 дней назад

llama.cpp builds b5702 through b7653 contain an out-of-bounds read vulnerability in the recurrent memory state restore path that allows attackers with write access to the slot save directory to read memory past the end of the allocated cells array. Attackers can craft a malicious slot file with an oversized seq_id value to trigger an out-of-bounds read that leaks heap data including pointer values into server logs, defeating ASLR protections and facilitating further exploitation.

EPSS

Процентиль: 37%
0.00453
Низкий

6.5 Medium

CVSS3