Security Advisory

CVE-2025-0317

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-20 10:10:02
Last updated 2025-03-20 14:39:00
Assigner @huntr_ai
State PUBLISHED

Description

A vulnerability in ollama/ollama versions <=0.3.14 allows a malicious user to upload and create a customized GGUF model file on the Ollama server. This can lead to a division by zero error in the ggufPadding function, causing the server to crash and resulting in a Denial of Service (DoS) attack.