VendorsHex-Raysidaall versions
Vulnerabilities

Hex-Rays IDA Pro

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2014-9458
Heap-based buffer overflow in the GDB debugger module in Hex-Rays IDA Pro before 6.6 cumulative fix 2014-12-24 allows remote GDB servers to have unspecified impact via unknown vectors.
Published 2015-01-02 · Modified
10.0EPSS 0.019
CVE-2011-1050
Unspecified vulnerability in Hex-Rays IDA Pro 5.7 and 6.0 has unknown impact and attack vectors related to "converson of string encodings" and "inconsistencies in the handling of UTF8 sequences by the user interface."
Published 2011-02-21 · Modified
10.0EPSS 0.015
CVE-2011-1051
Integer overflow in the COFF/EPOC/EXPLOAD input file loaders in Hex-Rays IDA Pro 5.7 and 6.0 has unknown impact and attack vectors related to memory allocation.
Published 2011-02-21 · Modified
10.0EPSS 0.015
CVE-2011-1052
Integer overflow in the PSX/GEOS input file loaders in Hex-Rays IDA Pro 5.7 and 6.0 has unknown impact and attack vectors related to memory allocation.
Published 2011-02-21 · Modified
10.0EPSS 0.015
CVE-2011-1054
Unspecified vulnerability in the PEF input file loader in Hex-Rays IDA Pro 5.7 and 6.0 has unknown impact and attack vectors.
Published 2011-02-21 · Modified
10.0EPSS 0.015
CVE-2011-4783
The IDAPython plugin before 1.5.2.3 in IDA Pro allows user-assisted remote attackers to execute arbitrary code via a crafted IDB file, related to improper handling of certain swig_runtime_data files in the current working directory.
Published 2011-12-27 · Modified
9.3EPSS 0.044
CVE-2011-1049
Buffer overflow in the Mach-O input file loader in Hex-Rays IDA Pro 5.7 and 6.0 allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted Macho-O file.
Published 2011-02-21 · Modified
6.8EPSS 0.037
CVE-2022-32441
A memory corruption in Hex Rays Ida Pro v6.6 allows attackers to cause a Denial of Service (DoS) via a crafted file. Related to Data from Faulting Address controls subsequent Write Address starting at msvcrt!memcpy+0x0000000000000056.
Published 2022-07-07 · Modified
5.5EPSS 0.007
CVE-2011-1053
Unspecified vulnerability in the Mach-O input file loader in Hex-Rays IDA Pro 5.7 and 6.0 allows user-assisted remote attackers to cause a denial of service (out-of-memory exception and inability to analyze code) via a crafted Mach-O file.
Published 2011-02-21 · Modified
4.3EPSS 0.012