Vulnerability Description
A weakness has been identified in radareorg radare2 up to 6.1.6. Affected is the function cmd_print in the library libr/core/cmd_print.inc of the component pb Print Command Handler. This manipulation causes integer overflow. The attack needs to be launched locally. The exploit has been made available to the public and could be used for attacks. Patch name: 2b6265476c75567006b0fcbb749f4ae7b189c5df. It is recommended to apply a patch to fix this issue.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Radare | Radare2 | >= 6.1.0, <= 6.1.6 |
Related Weaknesses (CWE)
References
- https://github.com/phix33/radare2/commit/2b6265476c75567006b0fcbb749f4ae7b189c5dPatch
- https://github.com/radareorg/radare2/Product
- https://github.com/radareorg/radare2/issues/26048ExploitIssue Tracking
- https://vuldb.com/cve/CVE-2026-14787Third Party AdvisoryVDB Entry
- https://vuldb.com/submit/850387Third Party AdvisoryVDB Entry
- https://vuldb.com/vuln/376376Third Party AdvisoryVDB Entry
- https://vuldb.com/vuln/376376/ctiPermissions RequiredVDB Entry
FAQ
What is CVE-2026-14787?
CVE-2026-14787 is a vulnerability with a CVSS score of 3.3 (LOW). A weakness has been identified in radareorg radare2 up to 6.1.6. Affected is the function cmd_print in the library libr/core/cmd_print.inc of the component pb Print Command Handler. This manipulation ...
How severe is CVE-2026-14787?
CVE-2026-14787 has been rated LOW with a CVSS base score of 3.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-14787?
Check the references section above for vendor advisories and patch information. Affected products include: Radare Radare2.