THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-43627 (HIGH 7.8) — llama.cpp builds b1283 through b9058 contain an integer overflow vulnerability in the llama_batch_init() function where unchecked multiplications in malloc() calls can wrap past INT32_MAX when computing allocation sizes. Attackers can pass specially crafted parameters to trigger

[NVD] CVE-2026-43627 (HIGH 7.8) — llama.cpp builds b1283 through b9058 contain an integer overflow vulnerability in the llama_batch_init() function where unchecked multiplications in malloc() calls can wrap past INT32_MAX when computing allocation sizes. Attackers can pass specially crafted parameters to trigger

lownvdPublished 2026-08-06

CVE-2026-43627 CVSS: 7.8 HIGH Published: 2026-08-06T22:17:05.633

llama.cpp builds b1283 through b9058 contain an integer overflow vulnerability in the llama_batch_init() function where unchecked multiplications in malloc() calls can wrap past INT32_MAX when computing allocation sizes. Attackers can pass specially crafted parameters to trigger integer overflow, causing heap corruption and potentia

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-43627