CVE-2026-18581
Received Received - Intake

Heap-based Assertion Failure in llama.cpp Jinja Template Parser

Vulnerability report for CVE-2026-18581, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-03

Last updated on: 2026-08-03

Assigner: VulDB

Description

A vulnerability was determined in ggml-org llama.cpp e15efe0. Affected by this issue is some unknown functionality of the file common/jinja/parser.cpp of the component Jinja Minja Template Parser. Executing a manipulation with the input {{9|9|{ can lead to reachable assertion. The attack requires local access. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-03
Last Modified
2026-08-03
Generated
2026-08-03
AI Q&A
2026-08-03
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
ggml-org llama.cpp e15efe0

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-617 The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability exists in ggml-org llama.cpp (commit e15efe0) within the Jinja Minja Template Parser component. It involves a reachable assertion triggered by a crafted input {{9|9|{ in the file common/jinja/parser.cpp. The issue allows local attackers to cause a denial of service via assertion failure. The vulnerability was publicly disclosed and reported to the project but remains unaddressed.

Detection Guidance

Detection requires checking for the vulnerable component (llama.cpp with ggml-org) and inspecting for the specific assertion issue in common/jinja/parser.cpp. No specific commands are provided in the context.

Impact Analysis

If you use the affected version of llama.cpp, an attacker with local access could exploit this to crash the application, leading to a denial of service. This may disrupt services relying on the parser for template processing. No data theft or privilege escalation is indicated.

Compliance Impact

This vulnerability primarily impacts availability by causing crashes. It does not directly affect data confidentiality or integrity. Compliance impact would depend on whether service disruption violates availability requirements in GDPR, HIPAA, or other standards. No evidence suggests data exposure.

Mitigation Strategies

Immediate mitigation includes removing or updating the vulnerable component (llama.cpp). Since the project has not responded, consider isolating affected systems or applying vendor patches if available.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-18581. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart