Vulnerability  ·  2026-09-19

vLLM — memory corruption in Triton bincount kernel via out-of-bounds multimodal audio token indexing

VulnerabilityLow impactGlobalCVE-2026-93841
An unbounded array index in vLLM's Triton kernel for multimodal audio processing allows out-of-bounds memory access via crafted token values.
Low individual severity but represents a precise catalogued flaw in vLLM's multimodal audio-handling path worth tracking given the engine's broad deployment.
Prompt token IDs index the penalty prompt-presence bitset in the Triton _bincount_kernel without bounds checking against vocabulary size; attackers can submit multimodal audio requests with tokens equal to vocabulary size to trigger memory corruption.
vLLM through 0.29.0
Upgrade vLLM to the version addressing this issue.
vLLM GitHub repositoryNVD CVE-2026-93841
See this in the live feed Explore related AI security and governance findings — updated every morning.
Open the feed →