Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
radare radare2 vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2022-1444
heap-use-after-free in GitHub repository radareorg/radare2 before 5.7.0. This vulnerability is capable of inducing denial of service.
Radare Radare2
516
VMScore
CVE-2022-1451
Out-of-bounds Read in r_bin_java_constant_value_attr_new function in GitHub repository radareorg/radare2 before 5.7.0. The bug causes the program reads data past the end 2f the intented buffer. Typically, this can allow malicious users to read sensitive information from other mem...
Radare Radare2
516
VMScore
CVE-2022-1452
Out-of-bounds Read in r_bin_java_bootstrap_methods_attr_new function in GitHub repository radareorg/radare2 before 5.7.0. The bug causes the program reads data past the end 2f the intented buffer. Typically, this can allow malicious users to read sensitive information from other ...
Radare Radare2
NA
CVE-2023-0302
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository radareorg/radare2 before 5.8.2.
Radare Radare2
NA
CVE-2020-27793
An off-by-one overflow flaw was found in radare2 due to mismatched array length in core_java.c. This could allow an malicious user to cause a crash, and perform a denail of service attack.
Radare Radare2
NA
CVE-2020-27795
A segmentation fault exists in radare2 with adf command. In libr/core/cmd_anal.c, when command "adf" has no or wrong argument, anal_fcn_data (core, input + 1) --> RAnalFunction *fcn = r_anal_get_fcn_in (core->anal, core->offset, -1); returns null pointer for fc...
Radare Radare2
668
VMScore
CVE-2022-0139
Use After Free in GitHub repository radareorg/radare2 before 5.6.0.
Radare Radare2
NA
CVE-2023-27114
radare2 v5.8.3 exists to contain a segmentation fault via the component wasm_dis at p/wasm/wasm.c.
Radare Radare2 5.8.3
383
VMScore
CVE-2017-9520
The r_config_set function in libr/config/config.c in radare2 1.5.0 allows remote malicious users to cause a denial of service (use-after-free and application crash) via a crafted DEX file.
Radare Radare2 1.5.0
383
VMScore
CVE-2017-9761
The find_eoq function in libr/core/cmd.c in radare2 1.5.0 allows remote malicious users to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted binary file.
Radare Radare2 1.5.0
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
SSRF
server-side request forgery
CVE-2024-30067
CVE-2024-5553
CVE-2024-30095
IDOR
CVE-2024-35252
CVE-2024-23692
CVE-2024-27801
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »