A security flaw has been discovered in radareorg radare2 up to 6.1.6. This impacts the function rstrword_get0set of the file libr/util/str.c. The manipulation results in integer overflow. The attack must be initiated from a local position. The exploit has been released to the public and may be used for attacks. The patch is identified as 11ac224c0eb8d57830fccc99e1c1cd8e5d958813. It is best practice to apply a patch to resolve this issue.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/14xxx/CVE-2026-14786.json",
"unresolved_ranges": [
{
"source": "AFFECTED_FIELD",
"extracted_events": [
{
"introduced": "6.1.1"
},
{
"last_affected": "6.1.1"
},
{
"introduced": "6.1.3"
},
{
"last_affected": "6.1.3"
},
{
"introduced": "6.1.5"
},
{
"last_affected": "6.1.5"
}
]
}
],
"cwe_ids": [
"CWE-189",
"CWE-190"
],
"cna_assigner": "VulDB"
}{
"cpe": "cpe:2.3:a:radare:radare2:*:*:*:*:*:*:*:*",
"source": [
"CPE_RANGE",
"REFERENCES"
],
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "6.1.8"
}
]
}
[
{
"id": "CVE-2026-14786-c0f48a3b",
"target": {
"file": "libr/util/str.c"
},
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"250734660436937623493311462025961516803",
"329896465742898985349199330611666946455",
"1869313825657169849134346947878297913",
"334600720614804284620266009699424945997",
"2725154444792747066209210347648468971",
"85221600201300797930245565738299139811",
"217432481431386162620293702199310069135",
"84330104484120008523731637244396272413",
"162588245981037502768715132089465887171",
"106343764533661809974814299716669019836",
"26288562454752598834691232721864313392",
"227749133439520039413162280991968368674",
"274779127774299168147912599094550140659",
"282959719478146098215713532595018001351",
"24915654347752480039848069617763257075",
"146579434835923613656479766776833242363",
"317530268650572467987480225097367262301",
"249200250845079847671634321193759824549",
"241344078865218116625114467088192557716"
]
},
"signature_version": "v1",
"source": "https://github.com/radareorg/radare2/commit/11ac224c0eb8d57830fccc99e1c1cd8e5d958813",
"signature_type": "Line"
},
{
"id": "CVE-2026-14786-c4c8c6e3",
"target": {
"function": "r_str_word_get0set",
"file": "libr/util/str.c"
},
"deprecated": false,
"digest": {
"function_hash": "187260968251873921022751347399525174561",
"length": 971.0
},
"signature_version": "v1",
"source": "https://github.com/radareorg/radare2/commit/11ac224c0eb8d57830fccc99e1c1cd8e5d958813",
"signature_type": "Function"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-14786.json"
"2026-08-12T15:31:23Z"