cbcvebase.

Radare Radare2 vulnerabilities

169 known vulnerabilities affecting radare/radare2.

Total CVEs
169
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL16HIGH71MEDIUM72LOW10

Vulnerabilities

Page 4 of 9
CVE-2018-12320P4HIGHCVSS 7.8v2.6.02018-06-13
CVE-2018-12320 [HIGH] CWE-416 CVE-2018-12320: There is a use after free in radare2 2.6.0 in r_anal_bb_free() in libr/anal/bb.c via a crafted Java There is a use after free in radare2 2.6.0 in r_anal_bb_free() in libr/anal/bb.c via a crafted Java binary file.
nvd
CVE-2022-1031P4HIGHCVSS 7.8fixed in 5.6.62022-03-22
CVE-2022-1031 [HIGH] CWE-416 CVE-2022-1031: Use After Free in op_is_set_bp in GitHub repository radareorg/radare2 prior to 5.6.6. Use After Free in op_is_set_bp in GitHub repository radareorg/radare2 prior to 5.6.6.
nvd
CVE-2022-1809P4HIGHCVSS 7.8fixed in 5.7.02022-05-21
CVE-2022-1809 [HIGH] CWE-824 CVE-2022-1809: Access of Uninitialized Pointer in GitHub repository radareorg/radare2 prior to 5.7.0. Access of Uninitialized Pointer in GitHub repository radareorg/radare2 prior to 5.7.0.
nvd
CVE-2023-1605P4HIGHCVSS 7.5fixed in 5.8.62023-03-23
CVE-2023-1605 [HIGH] CWE-400 CVE-2023-1605: Denial of Service in GitHub repository radareorg/radare2 prior to 5.8.6. Denial of Service in GitHub repository radareorg/radare2 prior to 5.8.6.
nvd
CVE-2022-1061P4HIGHCVSS 7.5fixed in 5.6.82022-03-24
CVE-2022-1061 [HIGH] CWE-122 CVE-2022-1061: Heap Buffer Overflow in parseDragons in GitHub repository radareorg/radare2 prior to 5.6.8. Heap Buffer Overflow in parseDragons in GitHub repository radareorg/radare2 prior to 5.6.8.
nvd
CVE-2021-32494P4HIGHCVSS 7.5v5.3.02023-07-07
CVE-2021-32494 [HIGH] CWE-369 CVE-2021-32494: Radare2 has a division by zero vulnerability in Mach-O parser's rebase_buffer function. This allow a Radare2 has a division by zero vulnerability in Mach-O parser's rebase_buffer function. This allow attackers to create malicious inputs that can cause denial of service.
nvd
CVE-2017-9949P4HIGHCVSS 7.8v1.5.02017-06-26
CVE-2017-9949 [HIGH] CWE-787 CVE-2017-9949: The grub_memmove function in shlr/grub/kern/misc.c in radare2 1.5.0 allows remote attackers to cause The grub_memmove function in shlr/grub/kern/misc.c in radare2 1.5.0 allows remote attackers to cause a denial of service (stack-based buffer underflow and application crash) or possibly have unspecified other impact via a crafted binary file, possibly related to a buffer underflow in fs/ext2.c in GNU GRUB 2.02.
nvd
CVE-2017-15932P4HIGHCVSS 7.8v2.0.12017-10-27
CVE-2017-15932 [HIGH] CWE-125 CVE-2017-15932: In radare2 2.0.1, an integer exception (negative number leading to an invalid memory access) exists In radare2 2.0.1, an integer exception (negative number leading to an invalid memory access) exists in store_versioninfo_gnu_verdef() in libr/bin/format/elf/elf.c via crafted ELF files when parsing the ELF version on 32bit systems.
nvdosv
CVE-2017-15931P4HIGHCVSS 7.8v2.0.12017-10-27
CVE-2017-15931 [HIGH] CWE-125 CVE-2017-15931: In radare2 2.0.1, an integer exception (negative number leading to an invalid memory access) exists In radare2 2.0.1, an integer exception (negative number leading to an invalid memory access) exists in store_versioninfo_gnu_verneed() in libr/bin/format/elf/elf.c via crafted ELF files on 32bit systems.
nvdosv
CVE-2018-12321P4HIGHCVSS 7.8v2.6.02018-06-13
CVE-2018-12321 [HIGH] CWE-125 CVE-2018-12321: There is a heap out of bounds read in radare2 2.6.0 in java_switch_op() in libr/anal/p/anal_java.c v There is a heap out of bounds read in radare2 2.6.0 in java_switch_op() in libr/anal/p/anal_java.c via a crafted Java binary file.
nvd
CVE-2017-16358P4HIGHCVSS 7.8v2.0.12017-11-01
CVE-2017-16358 [HIGH] CWE-125 CVE-2017-16358: In radare 2.0.1, an out-of-bounds read vulnerability exists in string_scan_range() in libr/bin/bin.c In radare 2.0.1, an out-of-bounds read vulnerability exists in string_scan_range() in libr/bin/bin.c when doing a string search.
nvdosv
CVE-2023-0302P4HIGHCVSS 7.8fixed in 5.8.22023-01-15
CVE-2023-0302 [HIGH] CWE-75 CVE-2023-0302: Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub re Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository radareorg/radare2 prior to 5.8.2.
nvd
CVE-2022-4398P4HIGHCVSS 7.8fixed in 5.8.02022-12-10
CVE-2022-4398 [HIGH] CWE-190 CVE-2022-4398: Integer Overflow or Wraparound in GitHub repository radareorg/radare2 prior to 5.8.0. Integer Overflow or Wraparound in GitHub repository radareorg/radare2 prior to 5.8.0.
nvd
CVE-2019-12802P4HIGHCVSS 7.8≤ 3.5.12019-06-13
CVE-2019-12802 [HIGH] CWE-416 CVE-2019-12802: In radare2 through 3.5.1, the rcc_context function of libr/egg/egg_lang.c mishandles changing contex In radare2 through 3.5.1, the rcc_context function of libr/egg/egg_lang.c mishandles changing context. This allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact (invalid memory access in r_egg_lang_parsechar; invalid free in rcc_pusharg).
nvd
CVE-2017-6319P4HIGHCVSS 7.8v1.2.12017-03-02
CVE-2017-6319 [HIGH] CWE-119 CVE-2017-6319: The dex_parse_debug_item function in libr/bin/p/bin_dex.c in radare2 1.2.1 allows remote attackers t The dex_parse_debug_item function in libr/bin/p/bin_dex.c in radare2 1.2.1 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted DEX file.
nvdosv
CVE-2018-11378P4HIGHCVSS 7.8v2.5.02018-05-22
CVE-2018-11378 [HIGH] CWE-119 CVE-2018-11378: The wasm_dis() function in libr/asm/arch/wasm/wasm.c in or possibly have unspecified other impact vi The wasm_dis() function in libr/asm/arch/wasm/wasm.c in or possibly have unspecified other impact via a crafted WASM file.
nvd
CVE-2017-15368P4HIGHCVSS 7.8v2.0.02017-10-16
CVE-2017-15368 [HIGH] CWE-125 CVE-2017-15368: The wasm_dis function in libr/asm/arch/wasm/wasm.c in radare2 2.0.0 allows remote attackers to cause The wasm_dis function in libr/asm/arch/wasm/wasm.c in radare2 2.0.0 allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted WASM file that triggers an incorrect r_hex_bin2str call.
nvd
CVE-2017-15385P4HIGHCVSS 7.8v2.0.02017-10-16
CVE-2017-15385 [HIGH] CWE-119 CVE-2017-15385: The store_versioninfo_gnu_verdef function in libr/bin/format/elf/elf.c in radare2 2.0.0 allows remot The store_versioninfo_gnu_verdef function in libr/bin/format/elf/elf.c in radare2 2.0.0 allows remote attackers to cause a denial of service (r_read_le16 invalid write and application crash) or possibly have unspecified other impact via a crafted ELF file.
nvdosv
CVE-2022-1714P4HIGHCVSS 7.1fixed in 5.7.02022-05-13
CVE-2022-1714 [HIGH] CWE-125 CVE-2022-1714: Out-of-bounds Read in GitHub repository radareorg/radare2 prior to 5.7.0. The bug causes the program Out-of-bounds Read in GitHub repository radareorg/radare2 prior to 5.7.0. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash.
nvd
CVE-2022-0518P4HIGHCVSS 7.1fixed in 5.6.22022-02-08
CVE-2022-0518 [HIGH] CWE-122 CVE-2022-0518: Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.2. Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.2.
nvd