Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
radare2 vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2018-20457
In radare2 up to and including 3.1.3, the assemble function inside libr/asm/p/asm_arm_cs.c allows malicious users to cause a denial-of-service (application crash via an r_num_calc out-of-bounds read) by crafting an arm assembly input because a loop uses an incorrect index in arma...
Radare Radare2
383
VMScore
CVE-2018-20459
In radare2 up to and including 3.1.3, the armass_assemble function in libr/asm/arch/arm/armass.c allows malicious users to cause a denial-of-service (application crash by out-of-bounds read) by crafting an arm assembly input because a loop uses an incorrect index in armass.c and ...
Radare Radare2
383
VMScore
CVE-2018-20461
In radare2 before 3.1.1, core_anal_bytes in libr/core/cmd_anal.c allows malicious users to cause a denial-of-service (application crash caused by out-of-bounds read) by crafting a binary file.
Radare Radare2
NA
CVE-2022-4843
NULL Pointer Dereference in GitHub repository radareorg/radare2 before 5.8.2.
Radare Radare2
445
VMScore
CVE-2022-1061
Heap Buffer Overflow in parseDragons in GitHub repository radareorg/radare2 before 5.6.8.
Radare Radare2
605
VMScore
CVE-2022-1809
Access of Uninitialized Pointer in GitHub repository radareorg/radare2 before 5.7.0.
Radare Radare2
445
VMScore
CVE-2021-4021
A vulnerability was found in Radare2 in versions before 5.6.2, 5.6.0, 5.5.4 and 5.5.2. Mapping a huge section filled with zeros of an ELF64 binary for MIPS architecture can lead to uncontrolled resource consumption and DoS.
Radare Radare2
383
VMScore
CVE-2022-1207
Out-of-bounds read in GitHub repository radareorg/radare2 before 5.6.8. This vulnerability allows malicious users to read sensitive information from outside the allocated buffer boundary.
Radare Radare2
605
VMScore
CVE-2022-1238
Out-of-bounds Write in libr/bin/format/ne/ne.c in GitHub repository radareorg/radare2 before 5.6.8. This vulnerability is heap overflow and may be exploitable. For more general description of heap buffer overflow, see [CWE](https://cwe.mitre.org/data/definitions/122.html).
Radare Radare2
605
VMScore
CVE-2022-1240
Heap buffer overflow in libr/bin/format/mach0/mach0.c in GitHub repository radareorg/radare2 before 5.8.6. If address sanitizer is disabled during the compiling, the program should executes into the `r_str_ncpy` function. Therefore I think it is very likely to be exploitable. For...
Radare Radare2
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
path traversal
CVE-2024-26978
CVE-2024-26982
wireless
CVE-2023-6949
CVE-2024-26980
CVE-2024-32766
CVE-2024-26939
cache poisoning
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »