Ollama是Ollama开源的一个可以在本地启动并运行的大型语言模型。 Ollama 0.3.14及之前版本存在安全漏洞,该漏洞源于上传自定义GGUF模型文件可能导致服务器分配无限内存,从而导致拒绝服务攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ollama | ollama/ollama | unspecified ~ latest | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-0312 | NULL Pointer Dereference in ollama/ollama | |
| CVE-2025-0317 | Divide By Zero in ollama/ollama | |
| CVE-2024-12886 | Out-Of-Memory (OOM) Vulnerability in ollama/ollama | |
| CVE-2024-12055 | DoS using malicious gguf model file in ollama/ollama | |
| CVE-2024-8063 | Divide by Zero in ollama/ollama |
No comments yet