CVE-2026-14760: radareorg radare2 regprofile disasm.c r_core_seek_arch_bits use after free

Published Jul 5, 2026
·
Updated

A weakness has been identified in radareorg radare2 up to 6.1.6. Impacted is the function rcoreseekarchbits of the file libr/core/disasm.c of the component regprofile Handler. Executing a manipulation can lead to use after free. The attack requires local access. The exploit has been made available to the public and could be used for attacks. This patch is called 8b25c773785d85cb0103410a0905089d286921c2. It is advisable to implement a patch to correct this issue.

Affected Software

2 affected components
radareorg radare2<=6.1.6
Radare Radare2>=6.1.0<6.1.8

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade radareorg radare2 regprofile Handler (libr/core/disasm.c: r_core_seek_arch_bits) to a version that resolves this vulnerability.

    Patch 8b25c773785d85cb0103410a0905089d286921c2
  2. Compensating control

    Because the attack requires local access and a public exploit exists, restrict local access to affected radare2/regprofile functionality to trusted users and environments (e.g., via OS account controls and host access restrictions).

Event History

Jul 5, 2026
CVE Published
via MITRE·03:30 PM
Data Sourced
via MITRE·03:30 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:19 PM
RemedyDescriptionSeverityWeaknessAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2026-14760?

The severity of CVE-2026-14760 is low, rated at 3.3.

2

What is CVE-2026-14760 about?

CVE-2026-14760 describes a use after free vulnerability in the r_core_seek_arch_bits function of radareorg radare2.

3

How can CVE-2026-14760 be exploited?

CVE-2026-14760 can be exploited through local access to manipulate the vulnerable function.

4

How do I fix CVE-2026-14760?

To fix CVE-2026-14760, upgrade to a patched version of radareorg radare2 beyond 6.1.6.

5

What component is affected by CVE-2026-14760?

The regprofile Handler component is affected by CVE-2026-14760 in the file libr/core/disasm.c.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203