CVE-2025-0313: Improper Validation of Array Index in ollama/ollama
Rejected reason: REJECT DO NOT USE THIS CVE ID NUMBER. The Rejected CVE Record is a duplicate of CVE-2024-12055. Notes: All CVE users should reference CVE-2024-12055 instead of this CVE Record. All references and descriptions in this candidate have been removed to prevent accidental usage.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0313?
CVE-2025-0313 is classified as a denial of service (DoS) vulnerability due to improper validation of array index bounds.
How do I fix CVE-2025-0313?
To fix CVE-2025-0313, update Ollama to version 0.3.15 or later where the vulnerability has been addressed.
What software versions are affected by CVE-2025-0313?
CVE-2025-0313 affects Ollama versions 0.3.14 and earlier.
How can CVE-2025-0313 be exploited?
CVE-2025-0313 can be exploited by a malicious user creating a GGUF model with improper array index bounds, leading to a denial of service.
What impact does CVE-2025-0313 have?
The impact of CVE-2025-0313 is a potential denial of service that can disrupt the availability of systems using affected versions of Ollama.