Ghidra before 12.1.1 contains an uncontrolled memory allocation vulnerability in the Mach-O binary parser that allows attackers to cause denial of service. An attacker can supply a crafted Mach-O binary with an arbitrarily large ncmds load command count value, forcing the parser to allocate excessive heap memory without validating file size, crashing the Ghidra JVM.
References
| Link | Resource |
|---|---|
| https://github.com/NationalSecurityAgency/ghidra/security/advisories/GHSA-v6c3-h9cp-3whf | Exploit Vendor Advisory |
| https://www.vulncheck.com/advisories/ghidra-denial-of-service-via-uncontrolled-memory-allocation-in-mach-o-parser | Third Party Advisory |
| https://github.com/NationalSecurityAgency/ghidra/security/advisories/GHSA-v6c3-h9cp-3whf | Exploit Vendor Advisory |
Configurations
History
11 Jun 2026, 13:28
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Nsa ghidra
Nsa |
|
| CPE | cpe:2.3:a:nsa:ghidra:*:*:*:*:*:*:*:* | |
| References | () https://github.com/NationalSecurityAgency/ghidra/security/advisories/GHSA-v6c3-h9cp-3whf - Exploit, Vendor Advisory | |
| References | () https://www.vulncheck.com/advisories/ghidra-denial-of-service-via-uncontrolled-memory-allocation-in-mach-o-parser - Third Party Advisory |
10 Jun 2026, 16:17
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/NationalSecurityAgency/ghidra/security/advisories/GHSA-v6c3-h9cp-3whf - |
10 Jun 2026, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-10 14:16
Updated : 2026-06-17 10:57
NVD link : CVE-2026-52759
Mitre link : CVE-2026-52759
CVE.ORG link : CVE-2026-52759
JSON object : View
Products Affected
nsa
- ghidra
CWE
CWE-789
Memory Allocation with Excessive Size Value
