<Vulnerability name="CVE-2026-14759">
    <DocumentDistribution xml:lang="en">Copyright © 2012 Red Hat, Inc. All rights reserved.</DocumentDistribution>
    <ThreatSeverity>Low</ThreatSeverity>
    <PublicDate>2026-07-05T15:15:08</PublicDate>
    <Bugzilla id="2497163" url="https://bugzilla.redhat.com/show_bug.cgi?id=2497163" xml:lang="en:us">
radare2: radare2: Denial of Service via heap-based buffer overflow
    </Bugzilla>
    <CVSS3 status="draft">
        <CVSS3BaseScore>3.3</CVSS3BaseScore>
        <CVSS3ScoringVector>CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L</CVSS3ScoringVector>
    </CVSS3>
    <CWE>CWE-131</CWE>
    <Details xml:lang="en:us" source="Mitre">
A security flaw has been discovered in radareorg radare2 up to 6.1.6. This issue affects the function r_bin_java_inner_classes_attr_calc_size of the file shlr/java/class.c of the component RBinJava Line Number Table Parser. Performing a manipulation results in heap-based buffer overflow. The attack requires a local approach. The exploit has been released to the public and may be used for attacks. The patch is named cd62d15a6cbecdc67fd03f3ebdbbbeb741d18f87. To fix this issue, it is recommended to deploy a patch.
    </Details>
    <Details xml:lang="en:us" source="Red Hat">
A flaw was found in radareorg radare2. A local attacker can perform a manipulation in the RBinJava Line Number Table Parser component, specifically within the `r_bin_java_inner_classes_attr_calc_size` function. This can lead to a heap-based buffer overflow, resulting in a denial of service.
    </Details>
    <Statement xml:lang="en:us">
This Low impact flaw in radare2's RBinJava Line Number Table Parser allows a local attacker to trigger a heap-based buffer overflow. By manipulating the `r_bin_java_inner_classes_attr_calc_size` function, an attacker can cause a denial of service. Exploitation requires local access to the system where radare2 is installed.
    </Statement>
    <Mitigation xml:lang="en:us">
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
    </Mitigation>
    <References xml:lang="en:us">
https://www.cve.org/CVERecord?id=CVE-2026-14759
https://nvd.nist.gov/vuln/detail/CVE-2026-14759
https://github.com/radareorg/radare2/
https://github.com/radareorg/radare2/commit/cd62d15a6cbecdc67fd03f3ebdbbbeb741d18f87
https://github.com/radareorg/radare2/issues/26043
https://vuldb.com/cve/CVE-2026-14759
https://vuldb.com/submit/850383
https://vuldb.com/vuln/376348
https://vuldb.com/vuln/376348/cti
    </References>
</Vulnerability>