[CVE-2023-4969] LeftoverLocals: Listening to LLM responses through leaked GPU local memory
blog.trailofbits.com | vulnerability | CVE-2023-4969 | #ai-security | #llm | #gpu | #vulnerability-disclosure | #machine-learning | #side-channel | #trail-of-bits | #memory-leak | #cve-2023-4969
Summary
LeftoverLocals (CVE-2023-4969) lets a co-resident attacker recover GPU local memory data on Apple, Qualcomm, AMD, and Imagination GPUs — enough to reconstruct LLM responses across process boundaries.
- Published
- Collected
Skip to content