cbcvebase.
CVE-2022-1207
published 2022-04-01

CVE-2022-1207: Out-of-bounds read in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability allows attackers to read sensitive information from outside the…

PriorityP424medium6.6CVSS 3.1
AVLACLPRNUIRSUCHILAL
EPSS
0.91%
55.9th percentile
Out-of-bounds read in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability allows attackers to read sensitive information from outside the allocated buffer boundary.

Affected

3 ranges
VendorProductVersion rangeFixed in
debianradare2< radare2 5.9.0+dfsg-1 (sid)radare2 5.9.0+dfsg-1 (sid)
radareradare2< 5.6.85.6.8
radareorgradareorg_radare2>= unspecified < 5.6.85.6.8

CVSS provenance

nvdv3.16.6MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:L
nvdv3.06.6MEDIUMCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:L
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv6.6MEDIUM
vendor_debian6.6MEDIUM
vendor_redhat4.7MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.