CVE-2024-58350: Ghidra < 11.2 - Use After Free in Sleigh Backend via Static Initialization Order
Ghidra before 11.2 contains a use after free vulnerability in the Sleigh backend caused by undefined static initialization order of the SleighArchitecture::translators and XmlArchitectureCapability singletons. Attackers can trigger an infinite loop or denial of service during shutdown by exploiting the unsafe destruction order that causes iteration over deallocated memory.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Ghidrato a version that resolves this vulnerability.Fixed in 11.2
Event History
Frequently Asked Questions
What is the severity of CVE-2024-58350?
CVE-2024-58350 has a severity rating of low at 2.1.
How do I fix CVE-2024-58350?
To fix CVE-2024-58350, update Ghidra to version 11.2 or later.
What type of vulnerability is CVE-2024-58350?
CVE-2024-58350 is categorized as a Use After Free vulnerability.
What systems are affected by CVE-2024-58350?
CVE-2024-58350 affects versions of Ghidra prior to 11.2.
What can attackers exploit in CVE-2024-58350?
Attackers can exploit CVE-2024-58350 to trigger an infinite loop or denial of service during shutdown.