| id: GO-2024-2699 |
| modules: |
| - module: github.com/jmorganca/ollama |
| versions: |
| - fixed: 0.1.29 |
| vulnerable_at: 0.1.28 |
| summary: Ollama DNS rebinding vulnerability in github.com/jmorganca/ollama |
| cves: |
| - CVE-2024-28224 |
| ghsas: |
| - GHSA-5jx5-hqx5-2vrj |
| references: |
| - advisory: https://github.com/advisories/GHSA-5jx5-hqx5-2vrj |
| - advisory: https://nvd.nist.gov/vuln/detail/CVE-2024-28224 |
| - web: https://github.com/ollama/ollama/releases |
| - web: https://research.nccgroup.com/2024/04/08/technical-advisory-ollama-dns-rebinding-attack-cve-2024-28224 |
| source: |
| id: GHSA-5jx5-hqx5-2vrj |
| created: 2024-06-06T16:17:36.326182-04:00 |
| review_status: UNREVIEWED |