Medium severity5.3NVD Advisory· Published Jul 5, 2026· Updated Jul 7, 2026
CVE-2026-14757
CVE-2026-14757
Description
A vulnerability was determined in radareorg radare2 up to 6.1.6. This affects the function core_anal_bytes of the file libr/core/cmd_anal.inc. This manipulation causes integer overflow. The attack needs to be launched locally. The exploit has been publicly disclosed and may be utilized. It is suggested to install a patch to address this issue.
Affected products
3Patches
Vulnerability mechanics
References
5- github.com/radareorg/radare2/issues/26041nvdExploitIssue Tracking
- vuldb.com/cve/CVE-2026-14757nvdThird Party AdvisoryVDB Entry
- vuldb.com/submit/850381nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/376346nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/376346/ctinvdPermissions RequiredVDB Entry
News mentions
1- Radare2: Nine Local Vulnerabilities Disclosed Together, Exploits Publicly AvailableVypr Intelligence · Jul 7, 2026