CVE-2025-52566 | ggml-org llama.cpp src/llama-vocab.cpp llama_vocab::tokenize memory corruption (GHSA-7rxv-5jhh-j6xx / EUVD-2025-19074)
A vulnerability was found in ggml-org llama.cpp and classified as critical. The impacted element is the function llama_vocab::tokenize of the file src/llama-vocab.cpp. The manipulation results in memory corruption.
This vulnerability is identified as CVE-2025-52566. The attack is only possible with local access. There is not any exploit available.
It is advisable to implement a patch to correct this issue.