Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
radare radare2 vulnerabilities and exploits
(subscribe to this query)
5.5
CVSSv3
CVE-2022-1382
NULL Pointer Dereference in GitHub repository radareorg/radare2 before 5.6.8. This vulnerability is capable of making the radare2 crash, thus affecting the availability of the system.
Radare Radare2
6.1
CVSSv3
CVE-2022-1383
Heap-based Buffer Overflow in GitHub repository radareorg/radare2 before 5.6.8. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow malicious users to read sensitive information from other memory locations or cause a crash.
Radare Radare2
5.5
CVSSv3
CVE-2018-15834
In radare2 prior to 2.9.0, a heap overflow vulnerability exists in the read_module_referenced_functions function in libr/anal/flirt.c via a crafted flirt signature file.
Radare Radare2
7.8
CVSSv3
CVE-2019-12790
In radare2 up to and including 3.5.1, there is a heap-based buffer over-read in the r_egg_lang_parsechar function of egg_lang.c. This allows remote malicious users to cause a denial of service (application crash) or possibly have unspecified other impact because of missing length...
Radare Radare2
7.8
CVSSv3
CVE-2022-4398
Integer Overflow or Wraparound in GitHub repository radareorg/radare2 before 5.8.0.
Radare Radare2
5.5
CVSSv3
CVE-2021-44974
radareorg radare2 version 5.5.2 is vulnerable to NULL Pointer Dereference via libr/bin/p/bin_symbols.c binary symbol parser.
Radare Radare2
1 Github repository
9.8
CVSSv3
CVE-2022-0139
Use After Free in GitHub repository radareorg/radare2 before 5.6.0.
Radare Radare2
5.5
CVSSv3
CVE-2018-19842
getToken in libr/asm/p/asm_x86_nz.c in radare2 prior to 3.1.0 allows malicious users to cause a denial of service (stack-based buffer over-read) via crafted x86 assembly data, as demonstrated by rasm2.
Radare Radare2
5.5
CVSSv3
CVE-2018-19843
opmov in libr/asm/p/asm_x86_nz.c in radare2 prior to 3.1.0 allows malicious users to cause a denial of service (buffer over-read) via crafted x86 assembly data, as demonstrated by rasm2.
Radare Radare2
5.5
CVSSv3
CVE-2018-20460
In radare2 before 3.1.2, the parseOperands function in libr/asm/arch/arm/armass64.c allows malicious users to cause a denial-of-service (application crash caused by stack-based buffer overflow) by crafting an input file.
Radare Radare2
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-23316
SQL injection
type confusion
CVE-2024-20697
CVE-2024-4344
local
CVE-2024-30043
CVE-2024-3821
CVE-2024-5041
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »