CVE-2026-86288 | ModelCloud GPTQModel up to 7.2.0 Triton dequantization kernel tritonv2.py g_idx out-of-bounds (Issue 2949)
A vulnerability described as critical has been identified in ModelCloud GPTQModel up to 7.2.0. This vulnerability affects unknown code of the file gptqmodel/nn_modules/qlinear/tritonv2.py of the component Triton dequantization kernel. Such manipulation of the argument g_idx leads to out-of-bounds read.
This vulnerability is documented as CVE-2026-86288. The attack can be executed remotely. Additionally, an exploit exists.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More