CVE-2026-17500 | ggml-org llama.cpp d006858/e15efe0 json-schema-to-grammar.cpp _visit_pattern null pointer dereference (Issue 25284)
摘要
A vulnerability was found in <a href="https://vuldb.com/product/ggml-org:llama">ggml-org llama.cpp d006858/e15efe0</a> and classified as <a href="https://vuldb.com/kb/risk">problematic</a>. This affects the function <code>_visit_pattern</code> of the file <em>common/json-schema-to-grammar.cpp</em>. The manipulation results in null pointer dereference. This vulnerability is reported as <a href="https://vuldb.com/cve/CVE-2026-17500">CVE-2026-17500</a>. The attack can be launched remotely. No exploit exists. The pull request to fix this issue awaits acceptance.
标签
- CVE-2026-17500
扩展字段
{
"raw_pub_date": "Sun, 26 Jul 2026 19:38:55 +0200"
}