OCTOBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-100503

LOW · CVSS 3.3 EPSS 0.12% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-26 · Last synced 2026-10-09

CyberRota Analysis

AI-Generated

Ghidra versions up to 12.1.4 are susceptible to a heap use-after-free vulnerability in the decompiler's Funcdata::opInsertAfter function, which can be exploited through specially crafted x86-64 binaries. This vulnerability can lead to crashes in the decompile helper process, resulting in denial of service for analysts and automated analysis workflows. Organizations using Ghidra for binary analysis should prioritize this issue to maintain operational continuity and prevent disruptions in their analysis capabilities.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-100503
Severity
LOW
CVSS
3.3
EPSS
0.12%

Original NVD Description

Ghidra versions through 12.1.4 contain a heap use-after-free vulnerability in the decompiler's Funcdata::opInsertAfter function caused by stale INDIRECT effect-op references. Attackers can craft a malicious binary with a specific x86-64 sequence that triggers the vulnerability during decompilation, causing the decompile helper process to crash and denying service to analysts and automated analysis pipelines.

Related CVEs

Other vulnerabilities affecting the same vendor(s)