PT-2024-30940 · Hex Rays · Hex-Rays Ida Pro
Published
2024-08-18
·
Updated
2025-12-30
·
CVE-2024-44083
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Hex-Rays IDA Pro versions 8.4 and earlier
Description
The issue occurs when there is a section with many jumps linked, and the final jump corresponds to the payload from where the actual entry point will be invoked, causing ida64.dll in Hex-Rays IDA Pro to crash. In many use cases, this is considered an inconvenience rather than a security issue.
Recommendations
For Hex-Rays IDA Pro version 8.4 and earlier, consider updating to a newer version to mitigate the risk of crashes due to linked jumps. As a temporary workaround, users can try to minimize the number of linked jumps in a section to avoid crashes. However, since the exact fix is not specified, it is crucial to monitor for updates from the vendor. At the moment, there is no information about a newer version that contains a fix for this issue.
Exploit
Fix
Resource Exhaustion
Allocation of Resources Without Limits
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Hex-Rays Ida Pro