Search CVE reports
31 – 40 of 46140 results
Not in release
llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in llama-server affecting six tokenization endpoints (/tokenize, /detokenize, /infill, /apply-template, /rerank, and /anthropic/count_tokens)...
1 affected package
llama.cpp
| Package | 22.04 LTS |
|---|---|
| llama.cpp | Not in release |
Not in release
llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in the vocab pointer of llama-server when the --sleep-idle-seconds feature is enabled, allowing unauthenticated remote attackers to execute...
1 affected package
llama.cpp
| Package | 22.04 LTS |
|---|---|
| llama.cpp | Not in release |
Not in release
llama.cpp builds b5702 through b7653 contain an out-of-bounds read vulnerability in the recurrent memory state restore path that allows attackers with write access to the slot save directory to read memory past the end of the...
1 affected package
llama.cpp
| Package | 22.04 LTS |
|---|---|
| llama.cpp | Not in release |
Not in release
llama.cpp builds b4882 through b9058 contain a heap buffer overflow vulnerability in the KV cache state restore path where the state_read_data() function computes write size without overflow checking, allowing attackers with write...
1 affected package
llama.cpp
| Package | 22.04 LTS |
|---|---|
| llama.cpp | Not in release |
Not in release
llama.cpp builds b3978 through b9058 contain an integer underflow and out-of-bounds read vulnerability in the DRY sampler that allows unauthenticated attackers to trigger a heap buffer underflow by sending a crafted HTTP request...
1 affected package
llama.cpp
| Package | 22.04 LTS |
|---|---|
| llama.cpp | Not in release |
Not in release
llama.cpp builds b1283 through b9058 contain an integer overflow vulnerability in the llama_batch_init() function where unchecked multiplications in malloc() calls can wrap past INT32_MAX when computing allocation sizes. Attackers...
1 affected package
llama.cpp
| Package | 22.04 LTS |
|---|---|
| llama.cpp | Not in release |
Not in release
llama.cpp builds b1886 through b7445 contain a double free vulnerability in the LLaMA-Android JNI wrapper where new_1batch() allocates memory using malloc() while free_1batch() deallocates it using the C++ delete operator, causing...
1 affected package
llama.cpp
| Package | 22.04 LTS |
|---|---|
| llama.cpp | Not in release |
Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility memcached client This issue affects Apache Portable Runtime Utility: from 1.3.0 through 1.6.3.
1 affected package
apr-util
| Package | 22.04 LTS |
|---|---|
| apr-util | Needs evaluation |
Heap-based Buffer Overflow vulnerability in Apache Portable Runtime Utility redis client. This issue affects Apache Portable Runtime Utility: from 1.6.0 through 1.6.3. Users are recommended to upgrade to version 1.6.4, which fixes...
1 affected package
apr-util
| Package | 22.04 LTS |
|---|---|
| apr-util | Needs evaluation |
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Portable Runtime Utility via apr_dbd_oracle provider. This issue affects Apache Portable Runtime Utility: from 1.6.0 through 1.6.3
1 affected package
apr-util
| Package | 22.04 LTS |
|---|---|
| apr-util | Needs evaluation |