CVE-2026-92983: Missing Release of Resource after Effective Lifetime in InternLM lmdeploy
InternLM LMDeploy through 0.17.0 in DistServe prefill/decode disaggregation mode fails to release scheduler sessions because the proxy uses user-facing session IDs instead of internal scheduler keys. Unauthenticated attackers can send completion requests to the proxy endpoint that accumulate unreleased scheduler metadata and memory until the prefill worker is out-of-memory killed.
AI Analysis
Technical Summary
InternLM lmdeploy versions up to 0.17.0 contain a resource management vulnerability in DistServe prefill/decode disaggregation mode. The proxy incorrectly uses user-facing session IDs rather than internal scheduler keys to release scheduler sessions. As a result, unauthenticated attackers can send crafted completion requests to the proxy endpoint, causing scheduler metadata and memory to accumulate without release. This accumulation can exhaust memory resources, causing the prefill worker process to be killed due to out-of-memory conditions.
Potential Impact
The vulnerability allows unauthenticated attackers to cause a denial-of-service condition by exhausting memory resources on the prefill worker through unreleased scheduler metadata accumulation. This can disrupt service availability by triggering out-of-memory kills of critical worker processes.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, monitor for unusual memory usage patterns on the prefill worker and consider restricting access to the proxy endpoint to trusted users or networks to reduce exposure.
CVE-2026-92983: Missing Release of Resource after Effective Lifetime in InternLM lmdeploy
Description
InternLM LMDeploy through 0.17.0 in DistServe prefill/decode disaggregation mode fails to release scheduler sessions because the proxy uses user-facing session IDs instead of internal scheduler keys. Unauthenticated attackers can send completion requests to the proxy endpoint that accumulate unreleased scheduler metadata and memory until the prefill worker is out-of-memory killed.
CVSS v4.0
Score 8.7high
Affected software
InternLM
lmdeploy
pkg:github/internlm/lmdeployRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
InternLM lmdeploy versions up to 0.17.0 contain a resource management vulnerability in DistServe prefill/decode disaggregation mode. The proxy incorrectly uses user-facing session IDs rather than internal scheduler keys to release scheduler sessions. As a result, unauthenticated attackers can send crafted completion requests to the proxy endpoint, causing scheduler metadata and memory to accumulate without release. This accumulation can exhaust memory resources, causing the prefill worker process to be killed due to out-of-memory conditions.
Potential Impact
The vulnerability allows unauthenticated attackers to cause a denial-of-service condition by exhausting memory resources on the prefill worker through unreleased scheduler metadata accumulation. This can disrupt service availability by triggering out-of-memory kills of critical worker processes.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, monitor for unusual memory usage patterns on the prefill worker and consider restricting access to the proxy endpoint to trusted users or networks to reduce exposure.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- VulnCheck
- Date Reserved
- 2026-09-17T13:55:53.252Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 6aabfa1355bf5e2cf57f75e1
Added to database: 09/17/2026, 14:32:51 UTC
Last enriched: 09/17/2026, 14:47:07 UTC
Last updated: 09/17/2026, 23:41:07 UTC
Views: 7
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.