Allocation of Resources Without Limits or Throttling in Ghidra - #VU131575
Published: May 15, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to allocation of resources without limits or throttling in ExportTrie.parseTrie() when parsing a crafted Mach-O export trie. A remote attacker can trick the victim into opening a crafted Mach-O binary to cause a denial of service.
User interaction is required to open the crafted file, and the issue affects both GUI and headless mode.