Podatność CVE-2024-8768


Publikacja: 2024-09-17

Opis:
A flaw was found in the vLLM library. A completions API request with an empty prompt will crash the vLLM API server, resulting in a denial of service.

Typ:

CWE-617

(Reachable Assertion)

 Referencje:
https://access.redhat.com/security/cve/CVE-2024-8768
https://bugzilla.redhat.com/show_bug.cgi?id=2311895
https://github.com/vllm-project/vllm/issues/7632
https://github.com/vllm-project/vllm/pull/7746

Copyright 2024, cxsecurity.com

 

Back to Top