CVE-2026-2069: ggml-org llama.cpp GBNF Grammar llama-grammar.cpp llama_grammar_advance_stack stack-based overflow
A flaw has been found in ggml-org llama.cpp up to 55abc39. Impacted is the function llamagrammaradvancestack of the file llama.cpp/src/llama-grammar.cpp of the component GBNF Grammar Handler. This manipulation causes stack-based buffer overflow. The attack needs to be launched locally. The exploit has been published and may be used. Patch name: 18993. To fix this issue, it is recommended to deploy a patch.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2069?
CVE-2026-2069 has been classified as a high severity vulnerability due to its potential for stack-based buffer overflow, which can allow arbitrary code execution.
How do I fix CVE-2026-2069?
To resolve CVE-2026-2069, update your version of ggml-org llama.cpp to a version beyond 55abc39 where the vulnerability has been addressed.
Which components are affected by CVE-2026-2069?
CVE-2026-2069 affects the GBNF Grammar Handler in the llama_grammar_advance_stack function of the llama.cpp/src/llama-grammar.cpp file.
What are the exploitation conditions for CVE-2026-2069?
Exploitation of CVE-2026-2069 may require an attacker to send specially crafted inputs to the GBNF Grammar Handler, leading to potential unintentional execution of code.
Is CVE-2026-2069 present in all versions of ggml-org llama.cpp?
No, CVE-2026-2069 is only present in ggml-org llama.cpp versions up to and including 55abc39.