PT-2026-48407 · Ghidra · Ghidra

Stefano Bonicatti

·

Published

2026-06-10

·

Updated

2026-06-10

·

CVE-2026-49496

CVSS v3.1

6.1

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H
Name of the Vulnerable Software and Affected Versions Ghidra versions prior to 12.1
Description A heap-use-after-free issue exists in the SleighBuilder::generatePointerAdd function. This occurs due to iterator invalidation when the PcodeCacher::allocateInstruction function reallocates the issued vector. Attackers can cause memory corruption by decompiling malicious binaries via the public Sleigh::oneInstruction C++ API, which impacts downstream consumers of the SLEIGH library.
Recommendations Update to version 12.1 or later.

Exploit

Fix

Use After Free

Weakness Enumeration

Related Identifiers

CVE-2026-49496

Affected Products

Ghidra