๐Ÿ” CVE Alert

CVE-2026-102507

MEDIUM 5.7

Sliver 1.7.7 Denial of Service via PE Parser Slice Bounds in Operator RPC

CVSS Score
5.7
EPSS Score
0.0%
EPSS Percentile
0th

Sliver C2 framework version 1.7.7 and earlier contains an unhandled panic vulnerability in the operator gRPC handler that allows an attacker controlling a compromised implant to crash the entire teamserver by returning a malformed or empty Download response. Attackers can send zero-length or 1-3 byte data payloads through a hostile implant session to trigger an out-of-bounds slice access in the vendored Binject library's BinaryMagic function, which propagates unrecovered through the operator gRPC interceptor chain and terminates the server process, affecting all connected operators.

CWE CWE-125
Vendor bishopfox
Product sliver
Published Sep 29, 2026
Stay Ahead of the Next One

Get instant alerts for bishopfox sliver

Be the first to know when new medium vulnerabilities affecting bishopfox sliver are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
Required
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High

Affected Versions

BishopFox / sliver
1.1.0 โ‰ค 1.7.7

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/h00die/sliver_1.7.7_DoS vulncheck.com: https://www.vulncheck.com/advisories/sliver-denial-of-service-via-pe-parser-slice-bounds-in-operator-rpc

Credits

h00die VulnCheck