Capstone-Engine / Capstone
9 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-55893 | Capstone SH disassembler `set_reg_n` heap buffer overflow via crafted SH2A FPU bytecode | HIGH | 7.3 | Aug 20, 2026 |
| CVE-2026-55894 | Capstone SH disassembler `sh_disassemble` out-of-bounds read via crafted SH2A bytecode | MEDIUM | 6.8 | Aug 20, 2026 |
| CVE-2026-49263 | Capstone WASM `br_table` instruction-size truncation can cause no-progress disassembly and parser desynchronization | LOW | 2.0 | Aug 14, 2026 |
| CVE-2026-49282 | Capstone M68K and RISCV `cs_insn_name()` invalid IDs can trigger out-of-bounds reads and process crashes | MEDIUM | 6.2 | Aug 14, 2026 |
| CVE-2026-47143 | Capstone has a NULL Pointer Dereference with 3DNow! opcodes | MEDIUM | 5.9 | Jul 21, 2026 |
| CVE-2025-68114 | Capstone doesn't check vsnprintf return in SStream_concat, allows stack buffer underflow and overflow | CRITICAL | 9.8 | Dec 17, 2025 |
| CVE-2025-67873 | Capstone doesn't check Skipdata length, leading to cs_insn.bytes heap buffer overflow | HIGH | 7.8 | Dec 17, 2025 |
| CVE-2016-7151 | Capstone 3.0.4 has an out-of-bounds vulnerability (SEGV caused by a read memory access) in X86_insn_reg_intel in arch/X86/X86Mapping.c. | MEDIUM | 5.5 | May 15, 2019 |
| CVE-2017-6952 | Integer overflow in the cs_winkernel_malloc function in winkernel_mm.c in Capstone 3.0.4 and earlier allows attackers to cause a denial of service (heap-based… | HIGH | 8.8 | Mar 16, 2017 |
Showing 1 to 9 of 9 CVEs