Ollama是Ollama开源的一个可以在本地启动并运行的大型语言模型。 Ollama 0.3.14版本存在资源管理错误漏洞,该漏洞源于未正确处理gzip炸弹响应,可能导致内存耗尽和拒绝服务攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ollama | ollama/ollama | unspecified ~ latest | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-0312 | NULL Pointer Dereference in ollama/ollama | |
| CVE-2025-0317 | Divide By Zero in ollama/ollama | |
| CVE-2025-0315 | Allocation of Resources Without Limits or Throttling in ollama/ollama | |
| CVE-2024-12055 | DoS using malicious gguf model file in ollama/ollama | |
| CVE-2024-8063 | Divide by Zero in ollama/ollama |
No comments yet