THREAT OPS › Threat News › [NVD] CVE-2026-70639 (MEDIUM 5.5) — llama.cpp builds b1886 through b7445 contain a null pointer dereference vulnerability in the LLaMA-Android JNI wrapper where the bench_1model() function fails to validate the model context pointer before dereferencing it. Attackers can supply a malicious, corrupt, or truncated mo
[NVD] CVE-2026-70639 (MEDIUM 5.5) — llama.cpp builds b1886 through b7445 contain a null pointer dereference vulnerability in the LLaMA-Android JNI wrapper where the bench_1model() function fails to validate the model context pointer before dereferencing it. Attackers can supply a malicious, corrupt, or truncated mo
CVE-2026-70639 CVSS: 5.5 MEDIUM Published: 2026-08-06T22:18:28.783
llama.cpp builds b1886 through b7445 contain a null pointer dereference vulnerability in the LLaMA-Android JNI wrapper where the bench_1model() function fails to validate the model context pointer before dereferencing it. Attackers can supply a malicious, corrupt, or truncated model file to trigger a null context condition, causin
Indicators of compromise
- CVE-2026-70639cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-70639