A security flaw has been discovered in JusticeRage Manalyze 1.0.0. Impacted is the function PE::_parse_relocations of the file manape/pe.cpp of the component PE Parser. Performing a manipulation of the argument BlockSize results in integer underflow. The attack requires a local approach. The patch is named c372b6bbca9d8c63812be50596fefa4a79c65fd0. It is recommended to apply a patch to fix this issue.

Project Subscriptions

Vendors Products
Justicerage Subscribe
Manalyze Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 23 Sep 2026 03:00:00 +0000

Type Values Removed Values Added
Description A security flaw has been discovered in JusticeRage Manalyze 1.0.0. Impacted is the function PE::_parse_relocations of the file manape/pe.cpp of the component PE Parser. Performing a manipulation of the argument BlockSize results in integer underflow. The attack requires a local approach. The patch is named c372b6bbca9d8c63812be50596fefa4a79c65fd0. It is recommended to apply a patch to fix this issue.
Title JusticeRage Manalyze PE Parser pe.cpp _parse_relocations integer underflow
First Time appeared Justicerage
Justicerage manalyze
Weaknesses CWE-189
CWE-191
CPEs cpe:2.3:a:justicerage:manalyze:*:*:*:*:*:*:*:*
Vendors & Products Justicerage
Justicerage manalyze
References
Metrics cvssV2_0

{'score': 1.7, 'vector': 'AV:L/AC:L/Au:S/C:N/I:N/A:P/E:ND/RL:OF/RC:C'}

cvssV3_0

{'score': 3.3, 'vector': 'CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:X/RL:O/RC:C'}

cvssV3_1

{'score': 3.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:X/RL:O/RC:C'}

cvssV4_0

{'score': 4.8, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-23T02:45:14.752Z

Reserved: 2026-09-22T17:32:52.528Z

Link: CVE-2026-95958

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-23T03:17:05.883

Modified: 2026-09-23T03:17:05.883

Link: CVE-2026-95958

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-23T04:30:18Z

Weaknesses