{"id":"UBUNTU-CVE-2026-52132","details":"llama.cpp through commit 97f06e9, when started with the --reranking flag, allows remote attackers to cause a denial of service (std::bad_alloc and HTTP 500) via a negative top_n value in a POST request to /rerank.","modified":"2026-09-16T14:01:48.318368630Z","published":"2026-09-01T18:17:00Z","upstream":["CVE-2026-52132"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-52132"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2026-52132"}],"affected":[{"package":{"name":"llama.cpp","ecosystem":"Ubuntu:26.04:LTS","purl":"pkg:deb/ubuntu/llama.cpp?arch=source&distro=resolute"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["5882+dfsg-2","8064+dfsg-1ubuntu1","8681+dfsg-1"],"ecosystem_specific":{"binaries":[{"binary_name":"libllama0","binary_version":"8681+dfsg-1"},{"binary_name":"llama.cpp","binary_version":"8681+dfsg-1"},{"binary_name":"llama.cpp-examples","binary_version":"8681+dfsg-1"},{"binary_version":"8681+dfsg-1","binary_name":"llama.cpp-tests"},{"binary_name":"llama.cpp-tools","binary_version":"8681+dfsg-1"},{"binary_version":"8681+dfsg-1","binary_name":"llama.cpp-tools-extra"},{"binary_name":"python3-gguf","binary_version":"8681+dfsg-1"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-52132.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"},{"type":"Ubuntu","score":"medium"}]}