CVE-2026-92971

Source
https://cve.org/CVERecord?id=CVE-2026-92971
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-92971.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-92971
Published
2026-09-17T13:43:15Z
Modified
2026-09-18T03:48:43Z
Severity
  • 8.7 (High) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N CVSS Calculator
Summary
InternLM LMDeploy through 0.17.0 Assertion Denial of Service
Details

InternLM LMDeploy through 0.17.0 contains a reachable assertion vulnerability in the DistServe decode migration loop that allows unauthenticated attackers to terminate the inference engine. Attackers can submit a migration_request with an empty remote_block_ids list to trigger an AssertionError that crashes the engine loop and causes subsequent inference requests to fail.

Database specific
{
    "cna_assigner": "VulnCheck",
    "cwe_ids": [
        "CWE-617"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/92xxx/CVE-2026-92971.json"
}
References

Affected packages

Git / github.com/internlm/lmdeploy

Affected ranges

Type
GIT
Repo
https://github.com/internlm/lmdeploy
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last Affected
Database specific
Show details
{
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "last_affected": "0.17.0"
        }
    ],
    "source": "AFFECTED_FIELD"
}

Affected versions

0.*
0.14.0a2
0.6.5
v0.*
v0.0.10
v0.0.11
v0.0.12
v0.0.13
v0.0.14
v0.0.2
v0.0.3
v0.0.4
v0.0.5
v0.0.6
v0.0.7
v0.0.8
v0.0.9
v0.1.0
v0.1.0a0
v0.1.0a1
v0.1.0a2
v0.10.0
v0.10.1
v0.10.2
v0.11.0
v0.11.1
v0.12.0
v0.12.1
v0.12.2
v0.12.3
v0.13.0
v0.14.0
v0.15.0
v0.16.0
v0.17.0
v0.2.0
v0.2.1
v0.2.2
v0.2.3
v0.2.4
v0.2.5
v0.2.6
v0.3.0
v0.4.0
v0.4.1
v0.4.2
v0.5.0
v0.5.1
v0.5.2
v0.5.2.post1
v0.5.3
v0.6.0
v0.6.0a0
v0.6.1
v0.6.2
v0.6.3
v0.6.4
v0.7.0
v0.7.0.post1
v0.7.0.post2
v0.7.0.post3
v0.7.1
v0.7.2
v0.7.2.post1
v0.8.0
v0.9.0
v0.9.1
v0.9.2

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-92971.json"