Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-100504

Ghidra versions through 12.1.4 contain a stack-based out-of-bounds write vulnerability in the decompiler's leftshift128 function when processing negative shift amounts from p-code. Attackers can craft malicious binaries with specific instruction sequences that trigger the overflow when decompiled, corrupting memory and potentially achieving code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 2.1%
CVSS Severity
CVSS v3 Score 7.0


Contact Us

Shodan ® - All rights reserved