Downloads · 30 days
0
n4u/runai-model
runai-model is a machine learning model from n4u. Use it for the machine learning task on the model card, and read the license before you ship it in a product. The card lists the license as apache-2.0.
Security proof-of-concept for a Denial-of-Service in run-ai/runai-model-streamer (commit 5c83ddb). Reported via huntr's Model File Vulnerability program.
Downloads · 30 days
0
Access
Public
Updated Jul 7, 2026
Parameters
4
78 B on disk
Likes
0
Public
Click a slice to open those files.
Other1.5 KB · 56%
From the Hugging Face model README
Security proof-of-concept for a Denial-of-Service in
run-ai/runai-model-streamer
(commit 5c83ddb). Reported via huntr's Model File Vulnerability program.
model.safetensors is a 78-byte safetensors file whose header omits the dtype
key. Loading it through the public SafetensorsStreamer API crashes the parser
with an uncaught KeyError, before any tensor data is read. This affects any app
using runai-model-streamer, including vLLM started with --load-format runai_streamer.
pip install runai-model-streamer torch — no GPU required:
from runai_model_streamer.safetensors_streamer.safetensors_streamer import SafetensorsStreamer
with SafetensorsStreamer() as s:
s.stream_file("model.safetensors")
list(s.get_tensors())
-> KeyError: 'dtype' (uncaught -> loader crash)
Harmless file: it triggers an unhandled exception, not code execution.