Intel

AIKIDO-2026-237045

sglang is vulnerable to Allocation of Resources Without Limits or Throttling

Allocation of Resources Without Limits or ThrottlingCVE-2026-93838 Published 2 days ago

59

Medium Risk

This Affects:

PYTHONsglang
0.0.1 - 0.5.20
Fixed in 0.5.21
Are you affected? Scan for Free

TL;DR

In prefill/decode disaggregation deployments, handle_staging_req() does not validate the chunk_idx field carried in ZMQ STAGING_REQ frames. A peer with access to the decode engine's internal ZMQ rank port can send a frame with an extremely large chunk_idx value. This drives unbounded memory allocation in the scheduler until the process runs out of memory and terminates.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range and you run SGLang in prefill/decode disaggregation mode with the decode engine's internal ZMQ rank port reachable by untrusted peers.

Background info

sglang is vulnerable to Allocation of Resources Without Limits or Throttling in versions 0.0.1 - 0.5.20.

How to fix this

Upgrade the sglang library to the patch version.

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform