VU#369611: ExLlamaV3 contains Denial of Service vulnerability via insufficient bounds checking on kernel dispatch index

2026-09-11T20:52:03Z6f60958e71ea05cfc4bb257458e6b5aa201afcb37bc2fdccbf95b4d2201dde6b
CVE-2025-20701CVE-2026-12780CVE-2026-15630CVE-2026-80047CVE-2026-84282CVE-2026-84286AOMEI-BackupperBluetoothCERT/CCCUDACasdoorExLlamaV3Hugging-Face-TransformersONLYOFFICESSRFSecure-BootSkullcandy-Dime-3UEFIauthorization-bypassdenial-of-servicefirmwarekernel-driverlocal-privilege-escalationmulti-tenantout-of-boundsownCloudphysical-disk-writeremote-codesupply-chainunauthenticated-pairingvulnerability-disclosure

What happened

CERT/CC vulnerability notes covering seven issues: ExLlamaV3 CUDA out-of-bounds access causing denial of service (CVE-2026-84286); AOMEI Backupper kernel-driver permissions flaw enabling arbitrary physical-disk writes and potential UEFI-level code execution (CVE-2026-12780); UEFI Shell firmware exposure that can undermine Secure Boot; unauthenticated Bluetooth pairing in Skullcandy Dime 3 earbuds via an Airoha SDK flaw (CVE-2025-20701); SSRF in the ONLYOFFICE ownCloud integration plugin (CVE-2026-84282); Casdoor cross-tenant authorization bypass (CVE-2026-15630); and Hugging Face Transformers’

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
certcc_vulnotes
Record identifier
6f60958e71ea05cfc4bb257458e6b5aa201afcb37bc2fdccbf95b4d2201dde6b
Enrichment time
2026-09-11T20:52:03Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · VU#369611: ExLlamaV3 contains Denial of Service vulnerability via insufficient bounds checking on kernel dispatch index · Baitaphish