{"id":"CVE-2026-14760","summary":"radareorg radare2 regprofile disasm.c r_core_seek_arch_bits use after free","details":"A weakness has been identified in radareorg radare2 up to 6.1.6. Impacted is the function r_core_seek_arch_bits of the file libr/core/disasm.c of the component regprofile Handler. Executing a manipulation can lead to use after free. The attack requires local access. The exploit has been made available to the public and could be used for attacks. This patch is called 8b25c773785d85cb0103410a0905089d286921c2. It is advisable to implement a patch to correct this issue.","modified":"2026-08-12T15:31:24.454818Z","published":"2026-07-05T15:30:08.954Z","database_specific":{"cwe_ids":["CWE-119","CWE-416"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/14xxx/CVE-2026-14760.json","unresolved_ranges":[{"source":"AFFECTED_FIELD","extracted_events":[{"introduced":"6.1.1"},{"last_affected":"6.1.1"},{"introduced":"6.1.3"},{"last_affected":"6.1.3"},{"introduced":"6.1.5"},{"last_affected":"6.1.5"}]}],"cna_assigner":"VulDB"},"references":[{"type":"WEB","url":"https://github.com/radareorg/radare2/"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/14xxx/CVE-2026-14760.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-14760"},{"type":"ADVISORY","url":"https://vuldb.com/cve/CVE-2026-14760"},{"type":"ADVISORY","url":"https://vuldb.com/submit/850384"},{"type":"ADVISORY","url":"https://vuldb.com/vuln/376349"},{"type":"REPORT","url":"https://github.com/radareorg/radare2/issues/26044"},{"type":"REPORT","url":"https://vuldb.com/vuln/376349/cti"},{"type":"FIX","url":"https://github.com/radareorg/radare2/commit/8b25c773785d85cb0103410a0905089d286921c2"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/radareorg/radare2","events":[{"introduced":"c3d11822fde49cbc9af338bbc54ad050d00f8a80"},{"fixed":"d904d02e1157b45135c6e61651d890bac8abe873"},{"fixed":"8b25c773785d85cb0103410a0905089d286921c2"}],"database_specific":{"source":["CPE_RANGE","REFERENCES"],"cpe":"cpe:2.3:a:radare:radare2:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"6.1.0"},{"fixed":"6.1.8"}]}}],"versions":["6.1.0","6.1.2","6.1.4","6.1.6"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-14760.json","vanir_signatures_modified":"2026-08-12T15:31:24Z","vanir_signatures":[{"signature_version":"v1","source":"https://github.com/radareorg/radare2/commit/8b25c773785d85cb0103410a0905089d286921c2","target":{"file":"libr/core/disasm.c","function":"r_core_disasm_pde"},"deprecated":false,"digest":{"function_hash":"250442762827901153848856882206380062765","length":3171},"id":"CVE-2026-14760-bbd7787c","signature_type":"Function"},{"digest":{"threshold":0.9,"line_hashes":["302364578277821277451910083013816841662","286159002288422171139571140384766613247","239440712546253611764144427386109957832","164148525444887104283920839321757351110","260764290393737553067522477477284638739","209849177835362023932475498682164891265","11168002955335018208667244525442987402","151607063463827302005353229687597979857","121586530108976502660390576864390538278","156969658499446611977242119963361295942","317920001706677301985190010162301884651","73942790244693875555749153679337488516","170580348582590336867663184169066865735","234064605177190374728462374651781144631","131576430262915109850985641168734151733","307009560754725793204971805003252212952","244172240081535097003825750014325784544","281312430986910532306892744366591264508","279884415557008344795618475317903908903","322186371492504852169862176921533840947","245060450960518590320568437249023608591","125677602432617847109307056652144749511","24607543412613305371294041382674484599","39660727795223554961085721427818532440","296168768570795694361429482062855191730","51356015397972621006644443556253318052","339397092334866138287173541987537962447","127623856063168397075110765065498068362","218714476318131835259413378083625900782","223412153633283768005503280446317221941","40871541803770079584471571534213611087","226629993351496649555152644070875851035","221811085231878313737936078411420599672","220675453443418225020610708617618708665","217060433786008308858256340164512385651","13604223134040018301747376780668068293","209369609827457554222112419245854469847","309022203018922510764051402401046511169","43265569609987995815962159046055572860","1710833527059638022938722785377183665","200130001103554619930011805573830259080"]},"id":"CVE-2026-14760-bbddce75","signature_type":"Line","signature_version":"v1","source":"https://github.com/radareorg/radare2/commit/8b25c773785d85cb0103410a0905089d286921c2","target":{"file":"libr/core/disasm.c"},"deprecated":false}]}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P"}]}