PT-2026-55811 · Radareorg · Radare2

·

CVE-2026-14761

·

Published

2026-07-05

·

Updated

2026-07-06

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions radareorg radare2 versions prior to 6.1.7
Description An integer overflow occurs in the r str ndup() and r str append() functions within the libr/util/str.c file. This issue requires local access to be exploited.
Recommendations Apply the patch identified as a20a56917ae85d732e683f8d9078bdcfee92446c for versions prior to 6.1.7.

Exploit

Fix

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-14761

Affected Products

Radare2