CyberRota Analysis
AI-GeneratedvLLM versions up to 0.29.0 are vulnerable due to improper validation of bad_words token indices, allowing attackers to exploit out-of-bounds indices that can corrupt the logits memory during concurrent requests. This can lead to incorrect token outputs for different in-flight HTTP requests, potentially compromising data integrity. Organizations using vLLM should prioritize this vulnerability to mitigate risks associated with incorrect model outputs.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
vLLM through 0.29.0 fails to properly validate bad_words token indices against the model's generation output width in SamplingParams.update_from_tokenizer(). Attackers can supply out-of-bounds token indices that corrupt logits memory of concurrent requests, causing different in-flight HTTP requests to return incorrect tokens.
Related CVEs
Other vulnerabilities affecting the same vendor(s)