CVE-2024-8063

Severity CVSS v4.0:
Pending analysis
Type:
CWE-369 Divide By Zero
Publication date:
20/03/2025
Last modified:
13/05/2025

Description

A divide by zero vulnerability exists in ollama/ollama version v0.3.3. The vulnerability occurs when importing GGUF models with a crafted type for `block_count` in the Modelfile. This can lead to a denial of service (DoS) condition when the server processes the model, causing it to crash.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ollama:ollama:0.3.3:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools