Description
A vulnerability was detected in ggml-org llama.cpp up to 0.4.0. This impacts the function rpc_server::deserialize_tensor of the file ggml/src/ggml-rpc/ggml-rpc.cpp of the component RPC Server. Performing a manipulation of the argument ne results in reachable assertion. The attack is possible to be carried out remotely. The reported GitHub issue was closed automatically due to inactivity.
Published: 2026-09-07
Score: 6.9 Medium
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability resides in the RPC Server of ggml.cpp, where a manipulated argument can trigger a reachable assertion in ggml-rpc.cpp. This assertion failure causes the server process to terminate, allowing an attacker to disrupt service availability. The flaw is an assertion failure resulting from improper argument validation.

Affected Systems

The affected product is ggml-org llama.cpp, specifically all releases up to and including version 0.4.0. No later version information is provided, so any instance running version 0.4.0 or earlier is potentially vulnerable.

Risk and Exploitability

With a CVSS score of 6.9, the vulnerability presents moderate severity. The EPSS score is unavailable and the vulnerability is not listed in CISA’s KEV catalog, indicating no confirmed exploitation yet. According to the description, the attack vector is remote, and exploitation would likely result in a denial of service through a server crash.

Generated by OpenCVE AI on September 7, 2026 at 15:21 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade ggml.cpp to a version later than 0.4.0.
  • Restrict access to the RPC server to trusted IP ranges or subnetworks.
  • Set up monitoring to detect abrupt service termination and automatically restart the service.

Generated by OpenCVE AI on September 7, 2026 at 15:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 07 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Description A vulnerability was detected in ggml-org llama.cpp up to 0.4.0. This impacts the function rpc_server::deserialize_tensor of the file ggml/src/ggml-rpc/ggml-rpc.cpp of the component RPC Server. Performing a manipulation of the argument ne results in reachable assertion. The attack is possible to be carried out remotely. The reported GitHub issue was closed automatically due to inactivity.
Title ggml-org llama.cpp RPC Server ggml-rpc.cpp deserialize_tensor assertion
First Time appeared Ggml-org
Ggml-org llama.cpp
Weaknesses CWE-617
CPEs cpe:2.3:a:ggml-org:llama.cpp:*:*:*:*:*:*:*:*
Vendors & Products Ggml-org
Ggml-org llama.cpp
References
Metrics cvssV2_0

{'score': 5, 'vector': 'AV:N/AC:L/Au:N/C:N/I:N/A:P/E:ND/RL:ND/RC:UR'}

cvssV3_0

{'score': 5.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L/E:X/RL:X/RC:R'}

cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L/E:X/RL:X/RC:R'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X'}


Subscriptions

Ggml-org Llama.cpp
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-07T14:15:15.855Z

Reserved: 2026-09-07T05:17:30.770Z

Link: CVE-2026-86317

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-07T15:17:33.843

Modified: 2026-09-07T15:17:33.843

Link: CVE-2026-86317

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-07T17:00:10Z

Weaknesses