๐Ÿ” CVE Alert

CVE-2026-100504

HIGH 7.0

Ghidra through 12.1.4 Stack-based Buffer Overflow via leftshift128

CVSS Score
7.0
EPSS Score
0.0%
EPSS Percentile
0th

Ghidra versions through 12.1.4 contain a stack-based out-of-bounds write vulnerability in the decompiler's leftshift128 function when processing negative shift amounts from p-code. Attackers can craft malicious binaries with specific instruction sequences that trigger the overflow when decompiled, corrupting memory and potentially achieving code execution.

CWE CWE-787
Vendor nationalsecurityagency
Product ghidra
Published Sep 26, 2026
Stay Ahead of the Next One

Get instant alerts for nationalsecurityagency ghidra

Be the first to know when new high vulnerabilities affecting nationalsecurityagency ghidra are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Attack Vector
Local
Attack Complexity
High
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High

Affected Versions

NationalSecurityAgency / ghidra
0 โ‰ค 12.1.4

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/NationalSecurityAgency/ghidra/commit/6babe3c1cec7f5ec920dd16cdc86a02893e5b33c github.com: https://github.com/NationalSecurityAgency/ghidra github.com: https://github.com/NationalSecurityAgency/ghidra/blob/8b6bbb857accdfa20dc5b2f5dea471178c2e9fbc/Ghidra/Features/Decompiler/src/decompile/cpp/multiprecision.cc#L29-L61 github.com: https://github.com/NationalSecurityAgency/ghidra/blob/8b6bbb857accdfa20dc5b2f5dea471178c2e9fbc/Ghidra/Features/Decompiler/src/decompile/cpp/ruleaction.cc#L7848-L7878 vulncheck.com: https://www.vulncheck.com/advisories/ghidra-through-12.1.4-stack-based-buffer-overflow-via-leftshift128