Dismissed
(already tracked in derivation metadata)
Permalink
CVE-2026-44222
6.5 MEDIUM
- CVSS version (CVSS): 3.1
- Attack Vector (AV): Network (N)
- Attack Complexity (AC): Low (L)
- Privileges Required (PR): Low (L)
- User Interaction (UI): None (N)
- Scope (S): Unchanged (U)
- Confidentiality (C): None (N)
- Integrity (I): None (N)
- Availability (A): High (H)
- Modified Attack Vector (MAV): Network (N)
- Modified Attack Complexity (MAC): Low (L)
- Modified Privileges Required (MPR): Low (L)
- Modified User Interaction (MUI): None (N)
- Modified Confidentiality (MC): None (N)
- Modified Scope (MS): Unchanged (U)
- Modified Integrity (MI): None (N)
- Modified Availability (MA): High (H)
by @ADMIN Activity log
- Created suggestion
- @ADMIN dismissed (already tracked in derivation metadata)
vLLM: Remote DoS via Special-Token Placeholders
vLLM is an inference and serving engine for large language models (LLMs). From 0.6.1 to before 0.20.0, there is a a Token Injection vulnerability in vLLM’s multimodal processing. Unauthenticated, text-only prompts that spell special tokens are interpreted as control. Image and video placeholder sequences supplied without matching data cause vLLM to index into empty grids during input-position computation, raising an unhandled IndexError and terminating the worker or degrading availability. Multimodal paths that rely on image_grid_thw/video_grid_thw are affected. This vulnerability is fixed in 0.20.0.
References
-
https://github.com/vllm-project/vllm/security/advisories/GHSA-hpv8-x276-m59f x_refsource_CONFIRM
-
https://github.com/vllm-project/vllm/issues/32656 x_refsource_MISC
Affected products
vllm
- ==>= 0.6.1, < 0.20.0
Matching in nixpkgs
pkgs.pkgsRocm.vllm
None
-
nixos-26.05 -
- nixos-26.05-small 0.16.0
pkgs.python313Packages.vllm
None
-
nixos-26.05 -
- nixos-26.05-small 0.16.0
pkgs.pkgsRocm.python3Packages.vllm
None
-
nixos-26.05 -
- nixos-26.05-small 0.16.0