Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-68765— hashcat KeePass KDBX v4 Module Heap Buffer Overflow via Token Field

Quick assessment

Affected
hashcat hashcat
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

hashcat是hashcat团队的一款密码恢复工具。 hashcat 7.1.2之后版本存在缓冲区错误漏洞,该漏洞源于KeePass AESKDF/KDBX v4模块存在堆缓冲区溢出,未对第九个哈希字段令牌进行长度检查,导致攻击者可通过提供过大的第九个哈希字段令牌破坏相邻堆内存,可能导致堆损坏或内存访问违规。

CVSS 6.1 · Medium EPSS 0.13% · P3

Possible ATT&CK Techniques 1 AI

T1190 · Exploit Public-Facing Application

Affected Version Matrix 1

VendorProduct Version RangeStatus
hashcat hashcat ef52453de9523f6a010652847b61cb340ed5daa5< 6f374c4ff7d5dc951530fbbbcf6b45e3c169b100 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-68765

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
hashcat KeePass KDBX v4 Module Heap Buffer Overflow via Token Field
Source: CVE Program / CVE List V5
Vulnerability Description
hashcat master branch builds after v7.1.2 contain a heap buffer overflow vulnerability in the KeePass AESKDF/KDBX v4 module (module 34301) that allows attackers to corrupt adjacent heap memory by supplying an oversized ninth hash field token. The module accepts up to 600 hex characters for the ninth token field but decodes it into a fixed 256-byte buffer with no length check, allowing a maximal input to write up to 44 bytes past the buffer boundary into adjacent esalt fields and heap chunk metadata, potentially enabling heap corruption or memory access violations.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
堆缓冲区溢出
Source: CVE Program / CVE List V5
Vulnerability Title
hashcat 缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
hashcat是hashcat团队的一款密码恢复工具。 hashcat 7.1.2之后版本存在缓冲区错误漏洞,该漏洞源于KeePass AESKDF/KDBX v4模块存在堆缓冲区溢出,未对第九个哈希字段令牌进行长度检查,导致攻击者可通过提供过大的第九个哈希字段令牌破坏相邻堆内存,可能导致堆损坏或内存访问违规。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
hashcat hashcat ef52453de9523f6a010652847b61cb340ed5daa5 ~ 6f374c4ff7d5dc951530fbbbcf6b45e3c169b100 -

II. Public POCs for CVE-2026-68765

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-68765

登录查看更多情报信息。

Patches & Fixes for CVE-2026-68765 (2)

Vendor Advisories for CVE-2026-68765 (1)

Proof of Concept for CVE-2026-68765 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2026-68765

No comments yet


Leave a comment