VulnWatch VulnWatch
← Back to dashboard
Medium nvd · CVE-2026-86317

CVE-2026-86317: A vulnerability was detected in ggml-org llama.cpp up to 0.4.0. This impacts the function rpc_server::deserialize_tensor

Published Sep 7, 2026 CVSS 6.9

A vulnerability was detected in ggml-org llama.cpp up to 0.4.0. This impacts the function rpc_server::deserialize_tensor of the file ggml/src/ggml-rpc/ggml-rpc.cpp of the component RPC Server. Performing a manipulation of the argument ne results in reachable assertion. The attack is possible to be carried out remotely. The reported GitHub issue was closed automatically due to inactivity.

Affected AI Products

llama
Get the weekly digest. Every Monday: top AI security stories of the week. Free.