{"id":"CVE-2026-103764","title":"Mooncake transfer engine before 0.3.13 contains an untrusted pointer dereference in ServerSession::readHeader that allows unauthenticated attackers to read and write arbitrary process memory via the TCP transport data port","summary":"Mooncake transfer engine before 0.3.13 contains an untrusted pointer dereference in ServerSession::readHeader that allows unauthenticated attackers to read and write arbitrary process memory via the TCP transport data port. Attackers can…","severity":"critical","cvss":9.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-822"],"vendor":"kvcache-ai","product":"Mooncake","affected":["Mooncake < 0.3.13"],"published":"2026-10-02","updated":"2026-10-02","sourceUpdated":"2026-10-02T00:16:59.253","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-103764","references":[{"url":"https://github.com/kvcache-ai/Mooncake","label":"disclosure@vulncheck.com"},{"url":"https://github.com/kvcache-ai/Mooncake/blob/6041a609a8c3af35e778f70db344f145c2914980/mooncake-transfer-engine/src/transport/tcp_transport/tcp_transport.cpp#L209","label":"disclosure@vulncheck.com"},{"url":"https://github.com/kvcache-ai/Mooncake/commit/a2933849417259e562fc9cbad63c618d464dfb2d","label":"disclosure@vulncheck.com"},{"url":"https://github.com/kvcache-ai/Mooncake/issues/4441","label":"disclosure@vulncheck.com"},{"url":"https://github.com/kvcache-ai/Mooncake/releases/tag/v0.3.13","label":"disclosure@vulncheck.com"},{"url":"https://www.vulncheck.com/advisories/mooncake-transfer-engine-before-0.3.13-unauthenticated-arbitrary-memory-read-write-via-tcp-transport","label":"disclosure@vulncheck.com"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-10-02T00:04:54.727Z","slug":"CVE-2026-103764","body":"## Overview\n\nMooncake transfer engine before 0.3.13 contains an untrusted pointer dereference in ServerSession::readHeader that allows unauthenticated attackers to read and write arbitrary process memory via the TCP transport data port. Attackers can send a crafted SessionHeader with arbitrary addr and size values using READ or WRITE opcodes to disclose KV cache contents, prompts and secrets or corrupt memory toward code execution.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"midnight","depthScore":54,"depthScoreParts":{"impact":53.9,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}