Filtered by vendor Ollama Subscriptions
Filtered by product Ollama Subscriptions
Total 22 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-0312 1 Ollama 1 Ollama 2025-03-28 7.5 High
A vulnerability in ollama/ollama versions <=0.3.14 allows a malicious user to create a customized GGUF model file that, when uploaded and created on the Ollama server, can cause a crash due to an unchecked null pointer dereference. This can lead to a Denial of Service (DoS) attack via remote network.
CVE-2024-45436 1 Ollama 1 Ollama 2024-08-30 9.1 Critical
extractFromZipFile in model.go in Ollama before 0.1.47 can extract members of a ZIP archive outside of the parent directory.