Resource exhaustion in Ghidra - CVE-2026-52759
Published: August 19, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to uncontrolled resource consumption in MachHeader.parse() when parsing a crafted Mach-O binary. A remote attacker can trick the victim into importing a crafted file to cause a denial of service.
User interaction is required to import the crafted Mach-O file, including through the GUI or headless analysis workflows.