What is CVE-2026-49263?
CVE-2026-49263 affects the Capstone disassembly framework prior to version 6.0.0-Alpha9, where the WebAssembly backend improperly handles attacker-controlled bytes via `cs_disasm()` APIs when processing a large `br_table` instruction. Users should update to the latest version to mitigate the issue.
Azərbaycanca: Capstone disassembler framework-də CVE-2026-49263 zəifliyi aşkar olunub. 6.0.0-Alpha9 versiyasından əvvəlki versiyalarda WebAssembly backend-i işlənmiş `br_table` təlimatında hücumçu tərəfindən idarə olunan baytları "cs_disasm()" API-ləri vasitəsilə qəbul edir. Təsirə məruz qalan sistemlərdə framework-i ən son versiyaya yeniləmək tövsiyə olunur.
FAQ2
Which product is affected by CVE-2026-49263?
CVE-2026-49263 affects the Capstone disassembly framework.
How can I mitigate CVE-2026-49263 in the Capstone framework?
It is recommended to update the framework to version 6.0.0-Alpha9 or later.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.