PT-2024-30940 · Hex Rays · Hex-Rays Ida Pro

Published

2024-08-18

·

Updated

2025-12-30

·

CVE-2024-44083

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Hex-Rays IDA Pro versions 8.4 and earlier
Description The issue occurs when there is a section with many jumps linked, and the final jump corresponds to the payload from where the actual entry point will be invoked, causing ida64.dll in Hex-Rays IDA Pro to crash. In many use cases, this is considered an inconvenience rather than a security issue.
Recommendations For Hex-Rays IDA Pro version 8.4 and earlier, consider updating to a newer version to mitigate the risk of crashes due to linked jumps. As a temporary workaround, users can try to minimize the number of linked jumps in a section to avoid crashes. However, since the exact fix is not specified, it is crucial to monitor for updates from the vendor. At the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Resource Exhaustion

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

CVE-2024-44083

Affected Products

Hex-Rays Ida Pro