An issue in ollama v.0.12.10 allows a remote attacker to cause a denial of service via the fs/ggml/gguf.go, function readGGUFV1String reads a string length from untrusted GGUF metadata
"https://github.com/pypa/advisory-database/blob/main/vulns/ollama/PYSEC-2026-102.yaml"