Catalog / llama.cpp

llama.cpp security advisories

All 13 advisories llama.cpp has published with an identifier, newest first. Severity is the one its publisher assigned, and the fix is the release the publisher named. Nothing on this page is our judgement.

Advisories
1312 carry a CVE
critical
2
high
6
medium
4
low
1
Fix in the archive
0of 13 matched to a release
Oldest
26 Apr 20242.3 years ago

13 of these point at a version older than anything the archive holds, so there is no release page to link. That is a gap in what was collected, not evidence that the fix does not exist. This page is a copy of what the publisher published, kept for reference. The authoritative source for a security question is the publisher, and an advisory missing from here is not evidence that none exists. What this page does and does not tell you sets out the limits in full.

Newest first

Every product
CVE-2026-34159critical

Unauthenticated RCE via GRAPH_COMPUTE buffer=0 bypass in llama.cpp RPC backend

GHSA-j8rj-fmpv-wcxw
CVE-2026-33298high

Heap Buffer Overflow via Integer Overflow in GGUF Tensor Parsing

GHSA-96jg-mvhq-q7q7
CVE-2026-27940high

Heap Buffer Overflow via Integer Overflow in `mem_size` Calculation — Bypass of CVE-2025-53630 Fix

GHSA-3p4r-fq3f-q74v
CVE-2026-21869low

Out-of-bounds Write in llama.cpp llama-server

GHSA-8947-pfff-2f3c
CVE-2025-53630high

Integer Overflow in GGUF Parser can lead to Heap Out-of-Bounds Read/Write in gguf

GHSA-vgg9-87g3-85w8
CVE-2025-52566high

Tokenizer signed vs. unsigned heap overflow

GHSA-7rxv-5jhh-j6xx
CVE-2025-49847high

Buffer Overflow in llama.cpp via Malicious GGUF Model – Exploitable via Vocabulary Loading (`llama_vocab::impl::token_to_piece`)

GHSA-8wwf-w4qm-gpqr
CVE-2024-42477medium

global-buffer-overflow in ggml_type_size

GHSA-mqp6-7pv6-fqjf
CVE-2024-42478medium

Arbitrary Address Read in rpc_server::get_tensor

GHSA-5vm9-p64x-gqw9
CVE-2024-42479critical

Write-what-where in rpc_server::set_tensor

GHSA-wcr5-566p-9cwj
CVE-2024-41130medium

Null pointer dereference in gguf_init_from_file

GHSA-49q7-2jmh-92fp
CVE-2024-32878high

Use of Uninitialized Variable Vulnerability in gguf_init_from_file

GHSA-p5mv-gjc5-mwqv