Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
radare radare2 vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2018-20457
In radare2 up to and including 3.1.3, the assemble function inside libr/asm/p/asm_arm_cs.c allows malicious users to cause a denial-of-service (application crash via an r_num_calc out-of-bounds read) by crafting an arm assembly input because a loop uses an incorrect index in arma...
Radare Radare2
383
VMScore
CVE-2018-20459
In radare2 up to and including 3.1.3, the armass_assemble function in libr/asm/arch/arm/armass.c allows malicious users to cause a denial-of-service (application crash by out-of-bounds read) by crafting an arm assembly input because a loop uses an incorrect index in armass.c and ...
Radare Radare2
383
VMScore
CVE-2018-20460
In radare2 before 3.1.2, the parseOperands function in libr/asm/arch/arm/armass64.c allows malicious users to cause a denial-of-service (application crash caused by stack-based buffer overflow) by crafting an input file.
Radare Radare2
NA
CVE-2020-27794
A double free issue exists in radare2 in cmd_info.c:cmd_info(). Successful exploitation could lead to modification of unexpected memory locations and potentially causing a crash.
Radare Radare2
383
VMScore
CVE-2018-19843
opmov in libr/asm/p/asm_x86_nz.c in radare2 prior to 3.1.0 allows malicious users to cause a denial of service (buffer over-read) via crafted x86 assembly data, as demonstrated by rasm2.
Radare Radare2
383
VMScore
CVE-2022-1207
Out-of-bounds read in GitHub repository radareorg/radare2 before 5.6.8. This vulnerability allows malicious users to read sensitive information from outside the allocated buffer boundary.
Radare Radare2
605
VMScore
CVE-2022-1238
Out-of-bounds Write in libr/bin/format/ne/ne.c in GitHub repository radareorg/radare2 before 5.6.8. This vulnerability is heap overflow and may be exploitable. For more general description of heap buffer overflow, see [CWE](https://cwe.mitre.org/data/definitions/122.html).
Radare Radare2
605
VMScore
CVE-2022-1240
Heap buffer overflow in libr/bin/format/mach0/mach0.c in GitHub repository radareorg/radare2 before 5.8.6. If address sanitizer is disabled during the compiling, the program should executes into the `r_str_ncpy` function. Therefore I think it is very likely to be exploitable. For...
Radare Radare2
383
VMScore
CVE-2022-1283
NULL Pointer Dereference in r_bin_ne_get_entrypoints function in GitHub repository radareorg/radare2 before 5.6.8. This vulnerability allows malicious users to cause a denial of service (application crash).
Radare Radare2
570
VMScore
CVE-2022-1899
Out-of-bounds Read in GitHub repository radareorg/radare2 before 5.7.0.
Radare Radare2
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-22120
CVE-2024-35921
CVE-2024-35874
brute force
CVE-2024-36080
unprivileged
CVE-2024-35917
IDOR
CVE-2024-4947
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »