Description
A vulnerability was identified in radareorg radare2 up to 6.1.6. This vulnerability affects the function cmd_anal_opcode of the file libr/core/cmd_anal.inc.c of the component hexpairs Parser. Such manipulation leads to integer overflow. The attack needs to be performed locally. The exploit is publicly available and might be used. The name of the patch is 84e773986e7e5bb30453a9384f498ec0ccc9d0a9. A patch should be applied to remediate this issue.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Sun, 05 Jul 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in radareorg radare2 up to 6.1.6. This vulnerability affects the function cmd_anal_opcode of the file libr/core/cmd_anal.inc.c of the component hexpairs Parser. Such manipulation leads to integer overflow. The attack needs to be performed locally. The exploit is publicly available and might be used. The name of the patch is 84e773986e7e5bb30453a9384f498ec0ccc9d0a9. A patch should be applied to remediate this issue. | |
| Title | radareorg radare2 hexpairs cmd_anal.inc.c cmd_anal_opcode integer overflow | |
| First Time appeared |
Radareorg
Radareorg radare2 |
|
| Weaknesses | CWE-189 CWE-190 |
|
| CPEs | cpe:2.3:a:radareorg:radare2:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Radareorg
Radareorg radare2 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-07-05T15:00:09.747Z
Reserved: 2026-07-04T16:19:31.432Z
Link: CVE-2026-14758
No data.
No data.
No data.
OpenCVE Enrichment
No data.