CVE-2026-7482
CVSS 9.1 CRITICAL: ollama before 0.17.1 contains a heap out-of-bounds read vulnerability in the GGUF model loader. EPSS 2% (81st percentile).
Vulnerabilities · 128 days ago
Heap out-of-bounds in Ollama GGUF loader (CVE-2026-7482) allows unauthenticated remote reads of heap memory, exposing prompts, env vars and secrets across ~300k deployments. CVEs: CVE-2026-7482.
CVSS 9.1 CRITICAL: ollama before 0.17.1 contains a heap out-of-bounds read vulnerability in the GGUF model loader. EPSS 2% (81st percentile).
3 sources covering this story
Ollama Out-of-Bounds Read Vulnerability Allows Remote Process Memory Leak
Critical out-of-bounds read in Ollama before 0.17.1 leaks process memory including API keys from over 300000 servers via crafted GGUF files.
Ollama vulnerability highlights danger of AI frameworks with unrestricted access
Dubbed Bleeding Llama, the flaw gives attackers direct access to sensitive data stored in the most popular framework for running AI models on local hardware.
Critical Bug Could Expose 300,000 Ollama Deployments to Information Theft
Dubbed Bleeding Llama, the heap out-of-bounds read issue can be exploited remotely, without authentication.
Part of the PlainSec briefing for 2026-05-06