VYPR
Medium severity5.5NVD Advisory· Published Jun 10, 2026· Updated Jun 11, 2026

CVE-2026-52753

CVE-2026-52753

Description

Ghidra before 12.0.3 contains an out-of-memory vulnerability in the rust_demangle function that allocates unbounded output buffers without size limits. Attackers can craft malicious Rust symbol names in binaries to trigger exponential memory allocation, causing process crashes during binary analysis.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • cpe:2.3:a:nsa:ghidra:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:nsa:ghidra:*:*:*:*:*:*:*:*range: <12.0.3
    • (no CPE)range: <12.0.3

Patches

Vulnerability mechanics

References

2

News mentions

1