CVE-2026-102566: CTranslate2 before 4.8.1 Heap Buffer Overflow via model.bin
CTranslate2 before 4.8.1 contains a heap-based buffer overflow in the binary model loader that fails to validate payload length against allocated buffer size. Attackers can craft malicious model files with oversized payload lengths to write past heap allocation boundaries, causing crashes or arbitrary code execution.
Affected Software
Event History
Frequently Asked Questions
Which deployments are exposed?
Deployments using CTranslate2 versions before 4.8.1 are exposed when they load binary model files. The issue is in the binary model loader and is triggered by a malicious model.bin payload.
What does an attacker need to exploit this issue?
An attacker needs to provide a crafted model file with an oversized payload length and have it loaded by the affected software. The vector is local, requires no privileges, and requires user interaction.
What should teams do if they cannot update immediately?
Avoid loading model files from untrusted sources until CTranslate2 can be updated to 4.8.1 or later. Restrict model loading to known, trusted model artifacts.