PT-2026-96313 · Vllm · Vllm
CVSS v4.0
8.7
High
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X |
Name of the Vulnerable Software and Affected Versions
vLLM versions prior to 0.29.1
Description
A denial of service issue exists in the NIXL connector's prefix caching implementation within prefill/decode disaggregated deployments. The system fails to properly validate block counts when processing multi-prompt completion requests. An attacker can cause the decode worker to terminate and remain unavailable until a restart occurs by submitting completion requests containing multiple prompts of varying lengths, which triggers an assertion failure in the
NixlBaseConnectorWorker. apply prefix caching() function.Recommendations
Update vLLM to version 0.29.1 or later.
Exploit
Fix
DoS
Assertion Failure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Vllm