CVE-2024-8768 Information

Description

A flaw was found in the vLLM library. A completions API request with an empty prompt will crash the vLLM API server resulting in a denial of service.

Reference

https://access.redhat.com/security/cve/CVE-2024-8768 https://bugzilla.redhat.com/show_bug.cgi?id=2311895 https://github.com/vllm-project/vllm/issues/7632 https://github.com/vllm-project/vllm/pull/7746

Share on: