CVE-2026-14787

EUVD-2026-41797
A weakness has been identified in radareorg radare2 up to 6.1.6. Affected is the function cmd_print in the library libr/core/cmd_print.inc of the component pb Print Command Handler. This manipulation causes integer overflow. The attack needs to be launched locally. The exploit has been made available to the public and could be used for attacks. Patch name: 2b6265476c75567006b0fcbb749f4ae7b189c5df. It is recommended to apply a patch to fix this issue.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
3.3 LOW
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 6.49%
Affected Products (NVD)
VendorProductVersion
radareradare2
6.1.0 ≤
𝑥
≤ 6.1.6
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
radare2
sid
6.1.8+ds-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
radare2
bionic
needs-triage
focal
needs-triage
jammy
dne
noble
needs-triage
questing
ignored
resolute
needs-triage
Common Weakness Enumeration