Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
There exists an unauthenticated remote information disclosure vulnerability in Ollama's model quantization engine
Vulnerability Description
Unauthenticated remote information disclosure vulnerability in Ollama's model quantization engine allows an attacker to read and exfiltrate the server's heap memory, potentially leading to sensitive data exposure, further compromise, and stealthy persistence.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ollama AI Ollama 缓冲区错误漏洞
Vulnerability Description
Ollama AI Ollama是Ollama AI的一款本地运行大语言模型的框架。 Ollama AI Ollama v0.13.5版本存在安全漏洞,该漏洞源于模型量化引擎问题,可能导致未经身份验证的攻击者远程读取和泄露服务器堆内存,敏感数据泄露、进一步破解和隐蔽持久化。
CVSS Information
N/A
Vulnerability Type
N/A