Количество 4
Количество 4
CVE-2024-12886
An Out-Of-Memory (OOM) vulnerability exists in the `ollama` server version 0.3.14. This vulnerability can be triggered when a malicious API server responds with a gzip bomb HTTP response, leading to the `ollama` server crashing. The vulnerability is present in the `makeRequestWithRetry` and `getAuthorizationToken` functions, which use `io.ReadAll` to read the response body. This can result in excessive memory usage and a Denial of Service (DoS) condition.
CVE-2024-12886
An Out-Of-Memory (OOM) vulnerability exists in the `ollama` server version 0.3.14. This vulnerability can be triggered when a malicious API server responds with a gzip bomb HTTP response, leading to the `ollama` server crashing. The vulnerability is present in the `makeRequestWithRetry` and `getAuthorizationToken` functions, which use `io.ReadAll` to read the response body. This can result in excessive memory usage and a Denial of Service (DoS) condition.
CVE-2024-12886
An Out-Of-Memory (OOM) vulnerability exists in the `ollama` server ver ...
GHSA-v464-r2r9-www7
Ollama Vulnerable to Denial of Service (DoS) via Crafted GZIP
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-12886 An Out-Of-Memory (OOM) vulnerability exists in the `ollama` server version 0.3.14. This vulnerability can be triggered when a malicious API server responds with a gzip bomb HTTP response, leading to the `ollama` server crashing. The vulnerability is present in the `makeRequestWithRetry` and `getAuthorizationToken` functions, which use `io.ReadAll` to read the response body. This can result in excessive memory usage and a Denial of Service (DoS) condition. | CVSS3: 7.5 | 0% Низкий | 11 месяцев назад | |
CVE-2024-12886 An Out-Of-Memory (OOM) vulnerability exists in the `ollama` server version 0.3.14. This vulnerability can be triggered when a malicious API server responds with a gzip bomb HTTP response, leading to the `ollama` server crashing. The vulnerability is present in the `makeRequestWithRetry` and `getAuthorizationToken` functions, which use `io.ReadAll` to read the response body. This can result in excessive memory usage and a Denial of Service (DoS) condition. | CVSS3: 7.5 | 0% Низкий | 11 месяцев назад | |
CVE-2024-12886 An Out-Of-Memory (OOM) vulnerability exists in the `ollama` server ver ... | CVSS3: 7.5 | 0% Низкий | 11 месяцев назад | |
GHSA-v464-r2r9-www7 Ollama Vulnerable to Denial of Service (DoS) via Crafted GZIP | CVSS3: 7.5 | 0% Низкий | 11 месяцев назад |
Уязвимостей на страницу