CVE & Vulnerabilities · September 28, 2026
A newly tracked flaw, CVE-2026-100504, affects Ghidra's decompiler through version 12.1.4: the leftshift128 function mishandles negative shift values pulled from p-code, causing a stack-based out-of-bounds write. A specially crafted binary can trigger this during analysis, corrupting memory in a way that may let an attacker execute arbitrary code on the analyst's machine — a real concern for anyone running Ghidra against untrusted samples.
// source: nvd.nist.gov ↗