CVE-2026-70640 | ggml-org llama.cpp up to 0.17.1/b7445 LLaMA-Android JNI Wrapper clear use after free
A vulnerability identified as critical has been detected in ggml-org llama.cpp up to 0.17.1/b7445. Affected by this issue is the function llama_batch_allocr::clear of the component LLaMA-Android JNI Wrapper. Performing a manipulation results in use after free.
This vulnerability is identified as CVE-2026-70640. The attack can be initiated remotely. There is not any exploit available.
It is recommended to apply a patch to fix this issue.VulDB Recent EntriesRead More