VU#369611: ExLlamaV3 contains Denial of Service vulnerability via insufficient bounds checking on kernel dispatch index
2026-09-11T20:52:03Z•6f60958e71ea05cfc4bb257458e6b5aa201afcb37bc2fdccbf95b4d2201dde6b
CVE-2025-20701CVE-2026-12780CVE-2026-15630CVE-2026-80047CVE-2026-84282CVE-2026-84286AOMEI-BackupperBluetoothCERT/CCCUDACasdoorExLlamaV3Hugging-Face-TransformersONLYOFFICESSRFSecure-BootSkullcandy-Dime-3UEFIauthorization-bypassdenial-of-servicefirmwarekernel-driverlocal-privilege-escalationmulti-tenantout-of-boundsownCloudphysical-disk-writeremote-codesupply-chainunauthenticated-pairingvulnerability-disclosure
What happened
CERT/CC vulnerability notes covering seven issues: ExLlamaV3 CUDA out-of-bounds access causing denial of service (CVE-2026-84286); AOMEI Backupper kernel-driver permissions flaw enabling arbitrary physical-disk writes and potential UEFI-level code execution (CVE-2026-12780); UEFI Shell firmware exposure that can undermine Secure Boot; unauthenticated Bluetooth pairing in Skullcandy Dime 3 earbuds via an Airoha SDK flaw (CVE-2025-20701); SSRF in the ONLYOFFICE ownCloud integration plugin (CVE-2026-84282); Casdoor cross-tenant authorization bypass (CVE-2026-15630); and Hugging Face Transformers’
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- certcc_vulnotes
- Record identifier
- 6f60958e71ea05cfc4bb257458e6b5aa201afcb37bc2fdccbf95b4d2201dde6b
- Enrichment time
- 2026-09-11T20:52:03Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.