PT-2024-37119 · Google · Google Kms

CVE-2024-5751

·

Published

2024-06-27

·

Updated

2026-06-29

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: BerriAI/litellm version v1.35.8
Description: The issue allows an attacker to achieve remote code execution. It exists in the add deployment function, which decodes and decrypts environment variables from base64 and assigns them to os.environ. An attacker can exploit this by sending a malicious payload to the "/config/update" endpoint, which is then processed and executed by the server when the get secret function is triggered. This requires the server to use Google KMS and a database to store a model.
Recommendations: For version v1.35.8, consider disabling the add deployment function and restrict access to the "/config/update" endpoint until a patch is available. Additionally, review the usage of Google KMS and database storage for models to minimize the risk of exploitation.

Exploit

Fix

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-5751
GHSA-GPPG-GQW8-WH9G
PYSEC-2026-389

Affected Products

Google Kms