CVE-2026-100649: vLLM before 0.29.0 contains a resource-limit bypass vulnerability in PyNvVideoCodec decoder allocation where sampler sub
Summary
vLLM (a system for running large language models) versions before 0.29.0 have a security flaw in its video processing component where attackers can bypass resource limits by selecting different sampler subclasses (variations of code that handle sampling) in video requests, causing the system to use more GPU memory than it should. Unauthenticated attackers (those without login credentials) can exploit this to crash or degrade the service by exhausting available GPU resources.
Solution / Mitigation
Update vLLM to version 0.29.0 or later.
Vulnerability Details
3.7(low)
EPSS: 0.0%
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
network
high
none
none
September 26, 2026
Classification
Affected Vendors
Related Issues
CVE-2026-47482: NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker can cause missing release of memory
CVE-2022-29200: TensorFlow is an open source platform for machine learning. Prior to versions 2.9.0, 2.8.1, 2.7.2, and 2.6.4, the implem
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-100649
First tracked: September 26, 2026 at 02:08 PM
Classified by LLM (prompt v3) · confidence: 85%