Horizon Alert
Summary of the vulnerability and why it matters
A critical vulnerability has been identified in the LightLLM router profiler service. If this optional service is enabled, it allows unauthenticated attackers to execute arbitrary code remotely by sending specially crafted data to the service. This could potentially lead to a compromise of systems running the affected software.
- Unauthenticated remote code execution risk.
- Enables remote code execution if profiling is enabled.
- Confirm relevance and exposure of the profiling service.
Attack Path
How an attacker could exploit the issue
An attacker can target the LightLLM router profiler service if it's started with a specific flag that enables profiling. This service, accessible over the network without authentication, is susceptible to crafted serialized data sent to its command queue. Successful exploitation allows an attacker to execute arbitrary code on the system.
- Unauthenticated network access required.
- Crafted serialized data sent to profiler.
- Remote code execution.
Live Threat
Current exploitation, exposure, and threat context
A remote code execution vulnerability exists in the LightLLM router profiler service when the `--enable_profiling` flag is set. This service exposes an unauthenticated RPyC server that can be exploited by sending specially crafted serialized objects, potentially allowing an attacker to execute arbitrary code on the affected system.
- Arbitrary code execution.
- Unauthenticated RPyC server exposure.
- System compromise.
Operational Fix
Recommended remediation, mitigation, and detection steps
The critical remote code execution vulnerability in LightLLM's router profiler service requires immediate attention from platform or application owners responsible for AI/ML deployments. The first step is to inventory all LightLLM instances, identify those with profiling enabled, and assess their network exposure and business criticality. Subsequent action will depend on this risk assessment, potentially involving vendor coordination, configuration changes, or planned remediation.
- Platform/Application owners should lead.
- Verify profiling enabled and network reachability.
- Plan remediation based on identified risk.