CVE-2026-45613 PUBLISHED

Rizin: Heap-buffer-overflow in OMF parser

Assigner: GitHub_M
Reserved: 12.05.2026 Published: 29.05.2026 Updated: 29.05.2026

Rizin is a UNIX-like reverse engineering framework and command-line toolset. There is a heap-buffer-overflow in librz/bin/format/omf/omf.c. This vulnerability is fixed by commit e6d0937c8a083e23ed76ccfb9f631cdc50c7af47.

Metrics

CVSS Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
CVSS Score: 3.3

Product Status

Vendor rizinorg
Product rizin
Versions
  • Version < e6d0937c8a083e23ed76ccfb9f631cdc50c7af47 is affected

References

Problem Types

  • CWE-125: Out-of-bounds Read CWE