Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-6816 | Ollama Denial of Service (DoS) via Null Pointer Dereference |
Github GHSA |
GHSA-p2wh-w96x-w232 | Ollama Denial of Service (DoS) via Null Pointer Dereference |
Fri, 28 Mar 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ollama
Ollama ollama |
|
| CPEs | cpe:2.3:a:ollama:ollama:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ollama
Ollama ollama |
|
| Metrics |
cvssV3_1
|
Fri, 21 Mar 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Thu, 20 Mar 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 20 Mar 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability in ollama/ollama versions <=0.3.14 allows a malicious user to create a customized GGUF model file that, when uploaded and created on the Ollama server, can cause a crash due to an unchecked null pointer dereference. This can lead to a Denial of Service (DoS) attack via remote network. | |
| Title | NULL Pointer Dereference in ollama/ollama | |
| Weaknesses | CWE-476 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: @huntr_ai
Published:
Updated: 2025-03-20T18:15:26.946Z
Reserved: 2025-01-07T17:56:32.141Z
Link: CVE-2025-0312
Updated: 2025-03-20T17:50:28.930Z
Status : Analyzed
Published: 2025-03-20T10:15:52.280
Modified: 2025-03-28T14:11:12.457
Link: CVE-2025-0312
OpenCVE Enrichment
No data.
EUVD
Github GHSA