Ollama DNS Rebinding Vulnerability (CVE‑2024‑28224)
ID: 5addd70f-6308-5e12-8076-704fb6175858
STIX ID: report--5addd70f-6308-5e12-8076-704fb6175858
Feed Name: NCC Research
Threat Score
NCC Group disclosed CVE-2024-28224: a DNS rebinding vulnerability in Ollama that can bypass browser same-origin protections to invoke the local Ollama API, allowing attackers to create/push models and exfiltrate arbitrary files from hosts running Ollama; a JavaScript proof-of-concept plus a rogue registry server are provided and Ollama released a fix in v0.1.29—users are advised to update and apply host/header validation and authentication controls.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
