OSV-2024-1266

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/llamacpp/OSV-2024-1266.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2024-1266
Published
2024-11-03T00:14:31.568857Z
Modified
2024-11-03T00:14:31.569247Z
Summary
UNKNOWN READ in llama_output_reserve
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=376770771

Crash type: UNKNOWN READ
Crash state:
llama_output_reserve
llama_decode
fuzz_tokenizer.cpp
References

Affected packages

OSS-Fuzz / llamacpp

Package

Name
llamacpp
Purl
pkg:generic/llamacpp

Affected ranges

Type
GIT
Repo
https://github.com/ggerganov/llama.cpp
Events

Affected versions

Other

b3988
b3989
b3990
b3991
b3994
b3995
b3996
b3997
b3998
b3999
b4000
b4001
b4002

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "introduced_range": "61715d5cc83a28181df6a641846e4f6a740f3c74:c5b0f4b5d90297f3e729fca7f78ddb25fcab5ddc",
    "fixed_range": "61408e7fad082dc44a11c8a9f1398da4837aad44:e597e50794f07ec8dc24b9efb18f94ec6386fda0"
}