Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
radare radare2 vulnerabilities and exploits
(subscribe to this query)
5.5
CVSSv3
CVE-2017-7716
The read_u32_leb128 function in libr/util/uleb128.c in radare2 1.3.0 allows remote malicious users to cause a denial of service (heap-based buffer over-read and application crash) via a crafted Web Assembly file.
Radare Radare2 1.3.0
5.5
CVSSv3
CVE-2017-7854
The consume_init_expr function in wasm.c in radare2 1.3.0 allows remote malicious users to cause a denial of service (heap-based buffer over-read and application crash) via a crafted Web Assembly file.
Radare Radare2 1.3.0
7.8
CVSSv3
CVE-2017-15368
The wasm_dis function in libr/asm/arch/wasm/wasm.c in radare2 2.0.0 allows remote malicious users to cause a denial of service (stack-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted WASM file that triggers an incorrect r_hex_b...
Radare Radare2 2.0.0
7.8
CVSSv3
CVE-2017-15385
The store_versioninfo_gnu_verdef function in libr/bin/format/elf/elf.c in radare2 2.0.0 allows remote malicious users to cause a denial of service (r_read_le16 invalid write and application crash) or possibly have unspecified other impact via a crafted ELF file.
Radare Radare2 2.0.0
5.5
CVSSv3
CVE-2017-16805
In radare2 2.0.1, libr/bin/dwarf.c allows remote malicious users to cause a denial of service (invalid read and application crash) via a crafted ELF file, related to r_bin_dwarf_parse_comp_unit in dwarf.c and sdb_set_internal in shlr/sdb/src/sdb.c.
Radare Radare2 2.0.1
9.8
CVSSv3
CVE-2020-24133
A heap buffer overflow vulnerability in the r_asm_swf_disass function of Radare2-extras before commit e74a93c allows malicious users to execute arbitrary code or carry out denial of service (DOS) attacks.
Radare Radare2-extras
5.5
CVSSv3
CVE-2018-8808
In radare2 2.4.0, there is a heap-based buffer over-read in the r_asm_disassemble function of asm.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted dex file.
Radare Radare2 2.4.0
5.5
CVSSv3
CVE-2018-8810
In radare2 2.4.0, there is a heap-based buffer over-read in the get_ivar_list_t function of mach0_classes.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted Mach-O file.
Radare Radare2 2.4.0
9.1
CVSSv3
CVE-2021-32495
Radare2 has a use-after-free vulnerability in pyc parser's get_none_object function. Attacker can read freed memory afterwards. This will allow malicious users to cause denial of service.
Radare Radare2 5.3.0
5.5
CVSSv3
CVE-2018-8809
In radare2 2.4.0, there is a heap-based buffer over-read in the dalvik_op function of anal_dalvik.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted dex file.
Radare Radare2 2.4.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-23692
CVE-2012-1823
memory leak
CVE-2024-0627
CVE-2024-31402
privilege escalation
CVE-2024-36418
remote code execution
CVE-2024-27844
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »