CVE-2026-4174Disclosure

LOWCVSS 1.9 · LOW

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability has been found in Radare2 5.9.9. This issue affects the function walk_exports_trie of the file libr/bin/format/mach0/mach0.c of the component Mach-O File Parser. Such manipulation leads to resource consumption. The attack can only be performed from a local environment. The exploit has been disclosed to the public and may be used. The existence of this vulnerability is still disputed at present. Upgrading to version 6.1.2 is capable of addressing this issue. The name of the patch is 4371ae84c99c46b48cb21badbbef06b30757aba0. You should upgrade the affected component. The code maintainer states that, "[he] wont consider this bug a DoS".

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-400CWE-404

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-03-15: 2Technical Details · 2026-03-15: 203-15
Signal classification1 categories
Disclosure
2100.0%
Referenced assets2 URLs
By indicator
Full discourse2 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-4174 A vulnerability has been found in Radare2 5.9.9. This issue affects the function walk_exports_trie of the file libr/bin/format/mach0/mach0.c of the component Mach-O Fil… https://www.cve.org/CVERecord?id=CVE-2026-4174

    Post summary

    The post announces a new vulnerability in Radare2 5.9.9, affecting the walk_exports_trie function in Mach-O, but gives no PoC, exploit details, or patch information.

    00000120
    56.7K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-4174 - Radare2 Mach-O File mach0.c walk_exports_trie resource consumption Intel Report: https://ift.tt/XTS58Cp

    Post summary

    An alert highlights CVE‑2026‑4174, a resource exhaustion flaw in Radare2’s Mach‑O handling, with a reference to an Intel report for further details.

    0000029
    336 followersView on X

Explore more