chiprook
← Security
SecuritySeptember 30, 2026, 08:31

CTranslate2 CVE-2026-102566 & CVE-2026-102567: Heap Overflow in AI Model Loader

Two memory-safety flaws were disclosed in CTranslate2, the inference engine behind Whisper and OpenNMT: a heap buffer overflow (CVE-2026-102566, CVSS 7.8) and an out-of-bounds read (CVE-2026-102567, CVSS 6.1). Both affect versions before 4.8.1, which contains the fix.

CTranslate2 CVE-2026-102566 & CVE-2026-102567: Heap Overflow in AI Model Loader
#CTranslate2#Whisper#OpenNMT
Read next
Software

Ubuntu opens early access to Myna AI dictation

AI

Pathumma Connect: Thai AI can act, but model base still foreign

Security

AvisLoader: New Windows Loader Uses Tox P2P Network for C2

Security

npm Trusted Publishing Abused to Ship GHAPPIER Loader