Description
A security flaw has been discovered in Ollama up to 0.20.2. This affects the function digestToPath of the file x/imagegen/transfer/transfer.go of the component Tensor Model Transfer Handler. The manipulation of the argument digest results in path traversal. The attack may be performed from remote. This attack is characterized by high complexity. The exploitability is reported as difficult. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Problem types
Timeline
| 2026-04-25: | Advisory disclosed |
| 2026-04-25: | VulDB entry created |
| 2026-04-26: | VulDB entry last update |
Credits
davidrochester
nicholasgould
davidrochester (VulDB User)
davidrochester (VulDB User)
VulDB CNA Team
References
vuldb.com/vuln/359599 (VDB-359599 | Ollama Tensor Model Transfer transfer.go digestToPath path traversal)
vuldb.com/vuln/359599/cti (VDB-359599 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/submit/797576 (Submit #797576 | Ollama v0.20.2 Information Disclosure)