Ollama Out-of-Bounds Read Vulnerability Allows Remote Process Memory Leak
2026-05-10T13:24:05Z•893db39bde2ace299beb7a8fc6c839a26edee3be7645a6dca5a8ce85902b6693
active-exploitationbotnetcredential-theftdisclosurelinux-kernellocal-privilege-escalationmalwarememory-leakout-of-bounds-readpatchingprivilege-escalationremote-code-executionsandbox-escapesupply-chainvulnerability
What happened
The collection highlights multiple high- and critical-severity vulnerabilities and active exploitation across enterprise and open-source software, plus several malware and supply-chain incidents. Notable vulnerabilities include Ollama out-of-bounds read (CVE-2026-7482, “Bleeding Llama”) enabling full process memory leakage, Palo Alto PAN-OS buffer overflow RCE (CVE-2026-0300) observed in the wild, Apache HTTP/2 double-free (CVE-2026-23918) with potential RCE, and Ivanti EPMM RCE (CVE-2026-6973). Other items cover cPanel fixes (CVE-2026-29201), a new Linux LPE (Dirty Frag) referencing CVE-2026-
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 893db39bde2ace299beb7a8fc6c839a26edee3be7645a6dca5a8ce85902b6693
- Enrichment time
- 2026-05-10T13:24:05Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.