THREAT OPS › Threat News › [NVD] CVE-2026-43627 (HIGH 7.8) — llama.cpp builds b1283 through b9058 contain an integer overflow vulnerability in the llama_batch_init() function where unchecked multiplications in malloc() calls can wrap past INT32_MAX when computing allocation sizes. Attackers can pass specially crafted parameters to trigger
[NVD] CVE-2026-43627 (HIGH 7.8) — llama.cpp builds b1283 through b9058 contain an integer overflow vulnerability in the llama_batch_init() function where unchecked multiplications in malloc() calls can wrap past INT32_MAX when computing allocation sizes. Attackers can pass specially crafted parameters to trigger
CVE-2026-43627 CVSS: 7.8 HIGH Published: 2026-08-06T22:17:05.633
llama.cpp builds b1283 through b9058 contain an integer overflow vulnerability in the llama_batch_init() function where unchecked multiplications in malloc() calls can wrap past INT32_MAX when computing allocation sizes. Attackers can pass specially crafted parameters to trigger integer overflow, causing heap corruption and potentia
Indicators of compromise
- CVE-2026-43627cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-43627