Hacker News new | ask | show | jobs
by fzzzy 802 days ago
There was a buffer overflow or some other exploit like that in llama.cpp and the gguf format. It has been fixed now, but it's definitely possible. Also weights distributed as python pickles can run arbitrary code.
1 comments

Distributing anything as python pickles seems utterly batshit to me.
Completely agree.