llama.cpp provides LLM inference in C/C++. Prior to b3427, llama.cpp contains a null pointer dereference in gguf_init_from_file. This vulnerability is fixed in b3427.
References
Configurations
History
27 Aug 2025, 16:20
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:ggml:llama.cpp:*:*:*:*:*:*:*:* | |
First Time |
Ggml
Ggml llama.cpp |
|
References | () https://github.com/ggerganov/llama.cpp/commit/07283b1a90e1320aae4762c7e03c879043910252 - Patch | |
References | () https://github.com/ggerganov/llama.cpp/security/advisories/GHSA-49q7-2jmh-92fp - Third Party Advisory |
Information
Published : 2024-07-22 18:15
Updated : 2025-08-27 16:20
NVD link : CVE-2024-41130
Mitre link : CVE-2024-41130
CVE.ORG link : CVE-2024-41130
JSON object : View
Products Affected
ggml
- llama.cpp
CWE
CWE-476
NULL Pointer Dereference