CVE-2026-14787
CVE-2026-14787 is a low-severity vulnerability in Radare Radare2 with a CVSS 3.x base score of 3.3. It is not currently listed as actively exploited by CISA, and its EPSS exploit-prediction score is low. The underlying weakness is classified as CWE-189.
Key facts
- Severity: Low (CVSS 3.x base score 3.3)
- CVSS v2: 1.7
- CVSS v4: 1.9
- EPSS exploit prediction: 0% (10th percentile)
- Actively exploited: Not listed in CISA KEV
- Weakness: CWE-189
- Affected product: Radare Radare2
- Published:
- Last modified:
Description
A weakness has been identified in radareorg radare2 up to 6.1.6. Affected is the function cmd_print in the library libr/core/cmd_print.inc of the component pb Print Command Handler. This manipulation causes integer overflow. The attack needs to be launched locally. The exploit has been made available to the public and could be used for attacks. Patch name: 2b6265476c75567006b0fcbb749f4ae7b189c5df. It is recommended to apply a patch to fix this issue.
Frequently asked questions
- What is CVE-2026-14787?
- A weakness has been identified in radareorg radare2 up to 6.1.6. Affected is the function cmd_print in the library libr/core/cmd_print.inc of the component pb Print Command Handler. This manipulation causes integer overflow. The attack needs to be launched locally. The exploit has been made available to the public and could be used for attacks. Patch name: 2b6265476c75567006b0fcbb749f4ae7b189c5df. It is recommended to apply a patch to fix this issue.
- How severe is CVE-2026-14787?
- CVE-2026-14787 has a CVSS 3.x base score of 3.3, rated low severity. It is exploitable over local access with low attack complexity, requires low privileges and no user interaction. Impact on confidentiality is none, integrity none, and availability low.
- Is CVE-2026-14787 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 0% (10th percentile), an estimate of the probability of exploitation in the next 30 days.
- What products are affected by CVE-2026-14787?
- CVE-2026-14787 affects Radare Radare2. See the affected-products list for the exact vulnerable versions.
- How do I fix CVE-2026-14787?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround.
- When was CVE-2026-14787 published?
- CVE-2026-14787 was published on 2026-07-06 and last updated on 2026-07-09.
References
- https://github.com/phix33/radare2/commit/2b6265476c75567006b0fcbb749f4ae7b189c5df
- https://github.com/radareorg/radare2/
- https://github.com/radareorg/radare2/issues/26048
- https://vuldb.com/cve/CVE-2026-14787
- https://vuldb.com/submit/850387
- https://vuldb.com/vuln/376376
- https://vuldb.com/vuln/376376/cti
Affected products (1)
- cpe:2.3:a:radare:radare2:*:*:*:*:*:*:*:*
More vulnerabilities in Radare Radare2
- CVE-2021-32495 — Critical (CVSS 10.0): Radare2 has a use-after-free vulnerability in pyc parser's get_none_object function. Attacker can read freed memory…
- CVE-2021-32494 — Critical (CVSS 10.0): Radare2 has a division by zero vulnerability in Mach-O parser's rebase_buffer function. This allow attackers to create…
- CVE-2025-1864 — Critical (CVSS 9.8): Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in radareorg radare2 allows…
- CVE-2025-1744 — Critical (CVSS 9.8): Out-of-bounds Write vulnerability in radareorg radare2 allows heap-based buffer over-read or buffer overflow.This…
- CVE-2024-29646 — Critical (CVSS 9.8): Buffer Overflow vulnerability in radarorg radare2 v.5.8.8 allows an attacker to execute arbitrary code via the name,…
- CVE-2023-46570 — Critical (CVSS 9.8): An out-of-bounds read in radare2 v.5.8.9 and before exists in the print_insn32 function of…
All CVEs affecting Radare Radare2 →
Other CWE-189 (Numeric Errors) vulnerabilities
- CVE-2015-8396 — Critical (CVSS 10.0): Integer overflow in the ImageRegionReader::ReadIntoBuffer function in…
- CVE-2015-7205 — Critical (CVSS 10.0): Integer underflow in the RTPReceiverVideo::ParseRtpPacket function in Mozilla Firefox before 43.0 and Firefox ESR 38.x…
- CVE-2015-6575 — Critical (CVSS 10.0): SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I does not properly consider integer promotion, which…
- CVE-2015-3864 — Critical (CVSS 10.0): Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in…
- CVE-2015-3836 — Critical (CVSS 10.0): The Parse_wave function in arm-wt-22k/lib_src/eas_mdls.c in the Sonivox DLS-to-EAS converter in Android before 5.1.1…
- CVE-2015-3834 — Critical (CVSS 10.0): Multiple integer overflows in the BnHDCP::onTransact function in media/libmedia/IHDCP.cpp in libstagefright in Android…