A vulnerability was found in ggml-org whisper.cpp 1.8.4-58. It has been classified as problematic. This impacts the function log_mel_spectrogram of the file src/whisper.cpp. The manipulation leads to out-of-bounds read.

This vulnerability is documented as CVE-2026-17512. The attack needs to be performed locally. Additionally, an exploit exists.

The pull request to fix this issue awaits acceptance.