{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","feed_url":"https://feed.craftedsignal.io/products/llama.cpp-b1886-through-b7445/feed.json","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":7.8,"id":"CVE-2026-43622"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["llama.cpp (b1886 through b7445)","llama.cpp (b1283 - b9058)"],"_cs_severities":["high"],"_cs_tags":["vulnerability","integer-overflow","llama-cpp"],"_cs_type":"advisory","_cs_vendors":["ggml-org"],"content_html":"\u003cp\u003eA security vulnerability exists in llama.cpp builds b1886 through b7445, specifically within the LLaMA-Android JNI (Java Native Interface) wrapper. The vulnerability is caused by a memory management mismatch where the \u003ccode\u003enew_1batch()\u003c/code\u003e function allocates memory using the standard \u003ccode\u003emalloc()\u003c/code\u003e C function, but the corresponding \u003ccode\u003efree_1batch()\u003c/code\u003e function attempts to deallocate that memory using the C++ \u003ccode\u003edelete\u003c/code\u003e operator.\u003c/p\u003e\n\u003cp\u003eThis mismatch between memory allocation and deallocation routines results in heap metadata corruption. An attacker capable of triggering this code path - typically through an application utilizing the affected library on Android - can induce a denial-of-service (DoS) condition via process crashes. Depending on the state of the heap allocator at the time of the corruption, there is potential for an attacker to achieve arbitrary code execution. This issue was addressed in build b7446.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation can lead to a denial of service on Android applications integrating the affected llama.cpp builds. In scenarios where heap manipulation is possible, an attacker could potentially gain unauthorized code execution within the context of the vulnerable application, impacting the confidentiality, integrity, and availability of data processed by the affected mobile application.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade to llama.cpp build b7446 or later across all Android application deployments.\u003c/li\u003e\n\u003cli\u003eAudit Android applications that bundle llama.cpp libraries for versions falling within the b1886-b7445 range.\u003c/li\u003e\n\u003cli\u003eImplement memory sanitizers (such as HWAddressSanitizer for Android) during the development and testing lifecycle to detect heap corruption bugs and mismatched memory management routines.\u003c/li\u003e\n\u003cli\u003eReview custom JNI wrappers for consistent use of allocation and deallocation primitives.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-06T23:30:08Z","date_published":"2026-08-06T17:25:52Z","id":"https://feed.craftedsignal.io/briefs/2026-08-llama-jni-memory-corruption/","summary":"A memory management mismatch in the llama.cpp Android JNI wrapper leads to heap metadata corruption, enabling potential denial of service or arbitrary code execution.","title":"Memory Management Vulnerability in llama.cpp Android JNI Wrapper","url":"https://feed.craftedsignal.io/briefs/2026-08-llama-jni-memory-corruption/"}],"language":"en","title":"CraftedSignal Threat Feed - Llama.cpp (B1886 Through B7445)","version":"https://jsonfeed.org/version/1.1"}