CVE-2018-20458
published 2018-12-25CVE-2018-20458: In radare2 prior to 3.1.1, r_bin_dyldcache_extract in libr/bin/format/mach0/dyldcache.c may allow attackers to cause a denial-of-service (application crash…
PriorityP414medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.94%
57.3th percentile
In radare2 prior to 3.1.1, r_bin_dyldcache_extract in libr/bin/format/mach0/dyldcache.c may allow attackers to cause a denial-of-service (application crash caused by out-of-bounds read) by crafting an input file.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | radare2 | < radare2 3.1.2+dfsg-1 (sid) | radare2 3.1.2+dfsg-1 (sid) |
| radare | radare2 | < 3.1.1 | 3.1.1 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv5.5MEDIUM
vendor_debian5.5LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wpfg-jwv3-5xqc: In radare2 prior to 3
ghsa_unreviewed·2022-05-13
CVE-2018-20458 [MEDIUM] CWE-125 GHSA-wpfg-jwv3-5xqc: In radare2 prior to 3
In radare2 prior to 3.1.1, r_bin_dyldcache_extract in libr/bin/format/mach0/dyldcache.c may allow attackers to cause a denial-of-service (application crash caused by out-of-bounds read) by crafting an input file.
OSV
CVE-2018-20458: In radare2 prior to 3
osv·2018-12-25·CVSS 5.5
CVE-2018-20458 [MEDIUM] CVE-2018-20458: In radare2 prior to 3
In radare2 prior to 3.1.1, r_bin_dyldcache_extract in libr/bin/format/mach0/dyldcache.c may allow attackers to cause a denial-of-service (application crash caused by out-of-bounds read) by crafting an input file.
Debian
CVE-2018-20458: radare2 - In radare2 prior to 3.1.1, r_bin_dyldcache_extract in libr/bin/format/mach0/dyld...
vendor_debian·2018·CVSS 5.5
CVE-2018-20458 [MEDIUM] CVE-2018-20458: radare2 - In radare2 prior to 3.1.1, r_bin_dyldcache_extract in libr/bin/format/mach0/dyld...
In radare2 prior to 3.1.1, r_bin_dyldcache_extract in libr/bin/format/mach0/dyldcache.c may allow attackers to cause a denial-of-service (application crash caused by out-of-bounds read) by crafting an input file.
Scope: local
sid: resolved (fixed in 3.1.2+dfsg-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-20455 CVE-2018-20456 CVE-2018-20457 CVE-2018-20458 CVE-2018-20459 CVE-2018-20460 CVE-2018-20461 radare2: Multiple vulnerabilities
bugzilla·2019-01-07·CVSS 5.5
CVE-2018-20455 [MEDIUM] CVE-2018-20455 CVE-2018-20456 CVE-2018-20457 CVE-2018-20458 CVE-2018-20459 CVE-2018-20460 CVE-2018-20461 radare2: Multiple vulnerabilities
CVE-2018-20455 CVE-2018-20456 CVE-2018-20457 CVE-2018-20458 CVE-2018-20459 CVE-2018-20460 CVE-2018-20461 radare2: Multiple vulnerabilities
CVE-2018-20455
In radare2 prior to 3.1.1, the parseOperand function inside libr/asm/p/asm_x86_nz.c may allow attackers to cause a denial of service (application crash via a stack-based buffer overflow) by crafting an input file, a related issue to CVE-2018-20456.
https://github.com/radare/radare2/commit/9b46d38dd3c4de6048a488b655c7319f845af185
https://github.com/radare/radare2/issues/12373
CVE-2018-20456
In radare2 prior to 3.1.1, the parseOperand function inside libr/asm/p/asm_x86_nz.c may allow attackers to cause a denial of service (application crash in libr/util/strbuf.c via a stack-based buffer over-read) by crafting an input file, a related i
Bugzilla
CVE-2018-20455 CVE-2018-20456 CVE-2018-20457 CVE-2018-20458 CVE-2018-20459 CVE-2018-20460 CVE-2018-20461 radare2: Multiple vulnerabilities [fedora-all]
bugzilla·2019-01-07·CVSS 5.5
CVE-2018-20455 [MEDIUM] CVE-2018-20455 CVE-2018-20456 CVE-2018-20457 CVE-2018-20458 CVE-2018-20459 CVE-2018-20460 CVE-2018-20461 radare2: Multiple vulnerabilities [fedora-all]
CVE-2018-20455 CVE-2018-20456 CVE-2018-20457 CVE-2018-20458 CVE-2018-20459 CVE-2018-20460 CVE-2018-20461 radare2: Multiple vulnerabilities [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fe
2018-12-25
Published