CyberRota Analysis
AI-GeneratedGhidra versions up to 12.1.4 are susceptible to a heap use-after-free vulnerability in the decompiler's Funcdata::opInsertAfter function, which can be exploited through specially crafted x86-64 binaries. This vulnerability can lead to crashes in the decompile helper process, resulting in denial of service for analysts and automated analysis workflows. Organizations using Ghidra for binary analysis should prioritize this issue to maintain operational continuity and prevent disruptions in their analysis capabilities.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Ghidra versions through 12.1.4 contain a heap use-after-free vulnerability in the decompiler's Funcdata::opInsertAfter function caused by stale INDIRECT effect-op references. Attackers can craft a malicious binary with a specific x86-64 sequence that triggers the vulnerability during decompilation, causing the decompile helper process to crash and denying service to analysts and automated analysis pipelines.
Related CVEs
Other vulnerabilities affecting the same vendor(s)