OllamaGHSA-5jx5-hqx5-2vrj
Ollama DNS rebinding vulnerability
High8.8CVE-2024-28224 · Published Apr 8, 2024 · updated Sep 10, 2026
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| github.com/ollama/ollama Go | < 0.1.29 | 0.1.29 |
Details and references
Ollama before 0.1.29 has a DNS rebinding vulnerability that can inadvertently allow remote access to the full API, thereby letting an unauthorized user chat with a large language model, delete a model, or cause a denial of service (resource exhaustion).
More Ollama advisories
All Ollama| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| May 312024 | Ollama does not validate the format of the digest (sha256 with 64 hex digits) CVE-2024-37032Mediumfixed in 0.1.34 | Medium | 0.1.34 |
| Aug 292024 | Ollama can extract members of a ZIP archive outside of the parent directory CVE-2024-45436High7.5fixed in 0.1.47 | High7.5 | 0.1.47 |
| Oct 312024 | Ollama Out-of-bounds Read CVE-2024-39720High8.2fixed in 0.1.46 | High8.2 | 0.1.46 |
| Mar 202025 | Ollama Allows Out-of-Bounds Read CVE-2024-12055High7.5no fix yet | High7.5 | No fix yet |
| Mar 202025 | Ollama Vulnerable to Denial of Service (DoS) via Crafted GZIP CVE-2024-12886High7.5no fix yet | High7.5 | No fix yet |
| Mar 202025 | Ollama Divide by Zero Vulnerability CVE-2024-8063High7.5no fix yet | High7.5 | No fix yet |