PT-2026-48407 · Ghidra · Ghidra
Stefano Bonicatti
·
Published
2026-06-10
·
Updated
2026-06-10
·
CVE-2026-49496
CVSS v3.1
6.1
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H |
Name of the Vulnerable Software and Affected Versions
Ghidra versions prior to 12.1
Description
A heap-use-after-free issue exists in the
SleighBuilder::generatePointerAdd function. This occurs due to iterator invalidation when the PcodeCacher::allocateInstruction function reallocates the issued vector. Attackers can cause memory corruption by decompiling malicious binaries via the public Sleigh::oneInstruction C++ API, which impacts downstream consumers of the SLEIGH library.Recommendations
Update to version 12.1 or later.
Exploit
Fix
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ghidra