logo

Bleeding Llama (CVE-2026-7482): Critical Unauthenticated Memory Leak in Ollama

ID: ebd59c35-479a-5a95-9c0c-46d8cd948ce2

STIX ID: report--ebd59c35-479a-5a95-9c0c-46d8cd948ce2

Feed Name: Security Boulevard

Threat Score
92/100

Date Published: 2026-05-12

Date Updated: 2026-05-12

Author: Deepak Kumar Choudhary

...
...

Critical vulnerability CVE-2026-7482 ("Bleeding Llama") in Ollama's GGUF loader enables unauthenticated attackers to read an instance's entire heap and exfiltrate secrets (API keys, prompts, environment variables, conversation fragments) using three API calls (api/blobs, api/create, api/push); a public PoC exists, roughly 300,000 internet-facing servers were estimated exposed, a patch is available in v0.17.1, and immediate remediation (patching, secret rotation, network controls) is recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.