CVE-2026-100649: vLLM before 0.29.0 Resource Limit Bypass via Sampler Subclass

Published Sep 26, 2026
·
Updated

vLLM before 0.29.0 contains a resource-limit bypass vulnerability in PyNvVideoCodec decoder allocation where sampler subclass shadowing allows independent counter increments. Unauthenticated attackers can select different sampler subclasses in video requests to exceed configured decoder limits and exhaust unaccounted GPU memory.

Affected Software

1 affected component
vllm vllm<0.29.0

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade vLLM to a version that resolves this vulnerability.

    Fixed in 0.29.0

Event History

Sep 26, 2026
CVE Published
via MITRE·01:23 PM
Data Sourced
via MITRE·01:23 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:16 PM
DescriptionSeverityWeakness

Frequently Asked Questions

1

Which deployments should be prioritized for remediation?

Deployments running vLLM versions before 0.29.0 that accept video requests are affected. Exposure is greatest where unauthenticated users can submit such requests.

2

Does exploitation require credentials or user interaction?

No. The issue can be exploited by unauthenticated attackers, and no user interaction is required.

3

What is the practical impact of successful exploitation?

An attacker can use different sampler subclasses to bypass configured decoder limits, causing GPU memory allocations that are not accounted for. This can exhaust GPU memory and affect availability.

4

How can I determine whether my deployment is vulnerable?

Check the installed vLLM version. Versions before 0.29.0 are affected; version 0.29.0 and later are not identified as affected by the provided advisory information.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203