capstone
PyPI3 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting capstonepage 1 of 1
- CVE-2016-7151MEDIUMCVSS 5.5EG 5.5✓ Fixed in 4.0.02019-05-15
vulnerable: 2.0 ... 3.0.5rc2 (10 versions)
Capstone 3.0.4 has an out-of-bounds vulnerability (SEGV caused by a read memory access) in X86_insn_reg_intel in arch/X86/X86Mapping.c.
- CVE-2017-6952HIGHCVSS 8.8EG 8.8✓ Fixed in 3.0.5rc22017-03-16
vulnerable: 2.0 ... 1.0 (15 versions)
Integer overflow in the cs_winkernel_malloc function in winkernel_mm.c in Capstone 3.0.4 and earlier allows attackers to cause a denial of service (heap-based buffer overflow in a kernel driver) or possibly have unspecified other impact vi…
- CVE-2026-47143MEDIUMCVSS 5.9EG 5.9✓ Fixed in 5.0.82026-07-21
vulnerable: 2.0 ... 5.0.7 (24 versions)
Capstone is a disassembly framework. Versions prior to 6.0.0-Alpha8 and 5.0.8 have a NULL pointer dereference in `modRMRequired()` and `decode()` when disassembling 3DNow! opcodes (`0F 0F`) in builds compiled with `-DCAPSTONE_X86_REDUCE`, …
Check whether capstone is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for capstone CVEs against the assets you own.
Start Free Scan →