Metrics
Affected Vendors & Products
Fri, 14 Aug 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ggml
Ggml llama.cpp |
|
| CPEs | cpe:2.3:a:ggml:llama.cpp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ggml
Ggml llama.cpp |
Wed, 12 Aug 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-805 | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Sat, 08 Aug 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 07 Aug 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 07 Aug 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ggml-org
Ggml-org llama.cpp |
|
| Vendors & Products |
Ggml-org
Ggml-org llama.cpp |
Thu, 06 Aug 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | llama.cpp builds b1283 through b9058 contain an integer overflow vulnerability in the llama_batch_init() function where unchecked multiplications in malloc() calls can wrap past INT32_MAX when computing allocation sizes. Attackers can pass specially crafted parameters to trigger integer overflow, causing heap corruption and potentially achieving arbitrary code execution through subsequent batch operations that write past allocated buffer boundaries. | |
| Title | llama.cpp b1283–b9058 Integer Overflow in llama_batch_init() Function | |
| Weaknesses | CWE-190 CWE-680 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-08-06T15:40:19.714Z
Updated: 2026-08-14T16:49:52.722Z
Reserved: 2026-05-01T18:22:45.641Z
Link: CVE-2026-43627
Updated: 2026-08-08T02:08:03.189Z
Status : Received
Published: 2026-08-06T22:17:05.633
Modified: 2026-08-08T02:17:16.900
Link: CVE-2026-43627