Local Assertion Vulnerability in ggml-org's Whisper.cpp
CVE-2026-17513
4.8MEDIUM
What is CVE-2026-17513?
A locally exploitable assertion vulnerability exists in the ggml-ftype_to_ggml_type function of ggml-org's Whisper.cpp. This issue arises from manipulation of the function's argument, leading to a reachable assertion condition. Users should be aware that exploitation requires local access. Despite being reported early through an issue tracking system, the vendor has not yet responded to the concern, leaving potential risks unaddressed.
Affected Version(s)
whisper.cpp 95ea8f9b
