[Git][security-tracker-team/security-tracker][master] Add new llama.cpp issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Aug 7 10:08:49 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
01163123 by Salvatore Bonaccorso at 2026-08-07T11:08:22+02:00
Add new llama.cpp issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -72,11 +72,14 @@ CVE-2026-71325 (Traefik is an open-source edge router that makes publishing serv
 CVE-2026-71324 (Traefik is an open source HTTP reverse proxy and load balancer. Prior  ...)
 	- traefik <itp> (bug #983289)
 CVE-2026-70640 (llama.cpp builds b1886 through b7445 contain a race condition use-afte ...)
-	TODO: check
+	- llama.cpp 7593+dfsg-1
+	NOTE: Fixed by: https://github.com/ggml-org/llama.cpp/commit/5c0d18881e0e9794c96b2602736b758bac9d9388 (b7446)
 CVE-2026-70639 (llama.cpp builds b1886 through b7445 contain a null pointer dereferenc ...)
-	TODO: check
+	- llama.cpp 7593+dfsg-1
+	NOTE: Fixed by: https://github.com/ggml-org/llama.cpp/commit/5c0d18881e0e9794c96b2602736b758bac9d9388 (b7446)
 CVE-2026-70638 (llama.cpp builds b1886 through b7445 contain an integer overflow vulne ...)
-	TODO: check
+	- llama.cpp 7593+dfsg-1
+	NOTE: Fixed by: https://github.com/ggml-org/llama.cpp/commit/5c0d18881e0e9794c96b2602736b758bac9d9388 (b7446)
 CVE-2026-70636 (Flowise through 3.1.4 contains an authentication bypass vulnerability  ...)
 	NOT-FOR-US: Flowise
 CVE-2026-70635 (TimescaleDB through 2.29.1, fixed in commit 517c13e, contains an out-o ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/011631232ec66655ac9d0ea879bfa4395d65ad9c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/011631232ec66655ac9d0ea879bfa4395d65ad9c
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260807/611cb85e/attachment.htm>


More information about the debian-security-tracker-commits mailing list