5
CVSSv2

CVE-2021-4021

Published: 24/02/2022 Updated: 09/08/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

A vulnerability was found in Radare2 in versions before 5.6.2, 5.6.0, 5.5.4 and 5.5.2. Mapping a huge section filled with zeros of an ELF64 binary for MIPS architecture can lead to uncontrolled resource consumption and DoS.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

radare radare2

Vendor Advisories

Debian Bug report logs - #1014490 radare2: CVE-2021-44975 CVE-2021-44974 CVE-2021-4021 Package: src:radare2; Maintainer for src:radare2 is Debian Security Tools <team+pkg-security@trackerdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Wed, 6 Jul 2022 20:57:02 UTC Severity: important Tags: securi ...
A vulnerability was found in Radare2 550 and in previous versions Mapping a huge section filled with zeros of an ELF64 binary for MIPS architecture can lead to uncontrolled resource consumption and denial of service ...