Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 23 Sep 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 23 Sep 2026 01:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Ghidra before 12.1.4 fails to validate the TYPE_COL byte in OptionsDB.createUnregisteredOption(), causing an ArrayIndexOutOfBoundsException that leaves domain objects permanently locked. Attackers can craft a malicious program database file that, when imported, causes the application to stall and prevents resource cleanup or graceful shutdown. | |
| Title | Ghidra before 12.1.4 Denial of Service via Crafted Database | |
| First Time appeared |
Nsa
Nsa ghidra |
|
| Weaknesses | CWE-460 | |
| CPEs | cpe:2.3:a:nsa:ghidra:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Nsa
Nsa ghidra |
|
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-23T13:46:55.065Z
Reserved: 2026-09-22T20:36:08.676Z
Link: CVE-2026-96273
Updated: 2026-09-23T13:46:44.479Z
Status : Received
Published: 2026-09-23T01:16:32.790
Modified: 2026-09-23T14:17:10.610
Link: CVE-2026-96273
No data.
OpenCVE Enrichment
Updated: 2026-09-23T06:30:09Z
-
CWE-460
Improper Cleanup on Thrown Exception