CVE-2024-39720

An issue was discovered in Ollama before 0.1.46. An attacker can use two HTTP requests to upload a malformed GGUF file containing just 4 bytes starting with the GGUF custom magic header. By leveraging a custom Modelfile that includes a FROM statement pointing to the attacker-controlled blob file, the attacker can crash the application through the CreateModel route, leading to a segmentation fault (signal SIGSEGV: segmentation violation).
Configurations

Configuration 1 (hide)

cpe:2.3:a:ollama:ollama:*:*:*:*:*:*:*:*

History

13 May 2025, 13:28

Type Values Removed Values Added
References () https://github.com/ollama/ollama/compare/v0.1.45...v0.1.46#diff-782c2737eecfa83b7cb46a77c8bdaf40023e7067baccd4f806ac5517b4563131L417 - () https://github.com/ollama/ollama/compare/v0.1.45...v0.1.46#diff-782c2737eecfa83b7cb46a77c8bdaf40023e7067baccd4f806ac5517b4563131L417 - Product
References () https://oligo.security/blog/more-models-more-probllms - () https://oligo.security/blog/more-models-more-probllms - Third Party Advisory, Exploit
Summary
  • (es) Se descubrió un problema en Ollama antes de la versión 0.1.46. Un atacante puede usar dos solicitudes HTTP para cargar un archivo GGUF malformado que contenga solo 4 bytes comenzando con el encabezado mágico personalizado GGUF. Al aprovechar un Modelfile personalizado que incluye una declaración FROM que apunta al archivo blob controlado por el atacante, el atacante puede bloquear la aplicación a través de la ruta CreateModel, lo que genera una segmentation fault (señal SIGSEGV: segmentation violation).
CPE cpe:2.3:a:ollama:ollama:*:*:*:*:*:*:*:*
First Time Ollama ollama
Ollama

01 Nov 2024, 16:35

Type Values Removed Values Added
CWE CWE-125
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.2

01 Nov 2024, 14:15

Type Values Removed Values Added
References
  • {'url': 'https://oligosecurity.webflow.io/blog/more-models-more-probllms', 'source': 'cve@mitre.org'}
  • () https://oligo.security/blog/more-models-more-probllms -

31 Oct 2024, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-31 20:15

Updated : 2025-05-13 13:28


NVD link : CVE-2024-39720

Mitre link : CVE-2024-39720

CVE.ORG link : CVE-2024-39720


JSON object : View

Products Affected

ollama

  • ollama
CWE
CWE-125

Out-of-bounds Read