Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-7020

Опубликовано: 26 апр. 2026
Источник: redhat
CVSS3: 5.6
EPSS Низкий

Описание

A security flaw has been discovered in Ollama up to 0.20.2. This affects the function digestToPath of the file x/imagegen/transfer/transfer.go of the component Tensor Model Transfer Handler. The manipulation of the argument digest results in path traversal. The attack may be performed from remote. This attack is characterized by high complexity. The exploitability is reported as difficult. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

A flaw was found in Ollama, specifically within the Tensor Model Transfer Handler component. A remote attacker can exploit this vulnerability by manipulating the digest argument in the digestToPath function, leading to a path traversal. This allows unauthorized access to files or directories on the system. The attack is complex to execute, but a public exploit is available.

Отчет

This Low impact flaw in Ollama's Tensor Model Transfer Handler allows a remote attacker to perform path traversal by manipulating the digest argument. While a public exploit exists, the attack is characterized by high complexity, limiting its overall impact on Red Hat deployments.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Migration Toolkit for Applications 8mta/mta-solution-server-rhel9Fix deferred
Red Hat Ansible Automation Platform 2ansible-automation-platform-24/lightspeed-rhel8Fix deferred
Red Hat Ansible Automation Platform 2ansible-automation-platform-25/lightspeed-rhel8Fix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=2461894Ollama: Ollama: Path traversal vulnerability in Tensor Model Transfer Handler

EPSS

Процентиль: 56%
0.00908
Низкий

5.6 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.7
nvd
3 месяца назад

A security flaw has been discovered in Ollama up to 0.20.2. This affects the function digestToPath of the file x/imagegen/transfer/transfer.go of the component Tensor Model Transfer Handler. The manipulation of the argument digest results in path traversal. The attack may be performed from remote. This attack is characterized by high complexity. The exploitability is reported as difficult. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 3.7
debian
3 месяца назад

A security flaw has been discovered in Ollama up to 0.20.2. This affec ...

CVSS3: 5.6
github
3 месяца назад

Ollama is Vulnerable to Path Traversal

EPSS

Процентиль: 56%
0.00908
Низкий

5.6 Medium

CVSS3