Radare Radare2 vulnerabilities
169 known vulnerabilities affecting radare/radare2.
Total CVEs
169
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL16HIGH71MEDIUM72LOW10
Vulnerabilities
Page 5 of 9
CVE-2022-0713P4HIGHCVSS 7.1fixed in 5.6.42022-02-22
CVE-2022-0713 [HIGH] CWE-122 CVE-2022-0713: Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.4.
Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.4.
nvd
CVE-2022-0522P4HIGHCVSS 7.1fixed in 5.6.22022-02-08
CVE-2022-0522 [HIGH] CWE-786 CVE-2022-0522: Access of Memory Location Before Start of Buffer in NPM radare2.js prior to 5.6.2.
Access of Memory Location Before Start of Buffer in NPM radare2.js prior to 5.6.2.
nvd
CVE-2022-0519P4HIGHCVSS 7.1fixed in 5.6.22022-02-08
CVE-2022-0519 [HIGH] CWE-805 CVE-2022-0519: Buffer Access with Incorrect Length Value in GitHub repository radareorg/radare2 prior to 5.6.2.
Buffer Access with Incorrect Length Value in GitHub repository radareorg/radare2 prior to 5.6.2.
nvd
CVE-2022-1451P4HIGHCVSS 7.1fixed in 5.7.02022-04-24
CVE-2022-1451 [HIGH] CWE-788 CVE-2022-1451: Out-of-bounds Read in r_bin_java_constant_value_attr_new function in GitHub repository radareorg/rad
Out-of-bounds Read in r_bin_java_constant_value_attr_new function in GitHub repository radareorg/radare2 prior to 5.7.0. The bug causes the program reads data past the end 2f the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash. More details see [CWE-125: Out-of-bounds read](
nvd
CVE-2022-1452P4HIGHCVSS 7.1fixed in 5.7.02022-04-24
CVE-2022-1452 [HIGH] CWE-125 CVE-2022-1452: Out-of-bounds Read in r_bin_java_bootstrap_methods_attr_new function in GitHub repository radareorg/
Out-of-bounds Read in r_bin_java_bootstrap_methods_attr_new function in GitHub repository radareorg/radare2 prior to 5.7.0. The bug causes the program reads data past the end 2f the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash. More details see [CWE-125: Out-of-bounds rea
nvd
CVE-2022-0521P4HIGHCVSS 7.1fixed in 5.6.22022-02-08
CVE-2022-0521 [HIGH] CWE-788 CVE-2022-0521: Access of Memory Location After End of Buffer in GitHub repository radareorg/radare2 prior to 5.6.2.
Access of Memory Location After End of Buffer in GitHub repository radareorg/radare2 prior to 5.6.2.
nvd
CVE-2022-1437P4HIGHCVSS 7.1fixed in 5.7.02022-04-22
CVE-2022-1437 [HIGH] CWE-122 CVE-2022-1437: Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.7.0. The bug causes the
Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.7.0. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash.
nvd
CVE-2026-14758P4MEDIUMCVSS 5.5≥ 6.1.0, < 6.1.82026-07-05
CVE-2026-14758 [MEDIUM] CWE-189 CVE-2026-14758: A vulnerability was identified in radareorg radare2 up to 6.1.6. This vulnerability affects the func
A vulnerability was identified in radareorg radare2 up to 6.1.6. This vulnerability affects the function cmd_anal_opcode of the file libr/core/cmd_anal.inc.c of the component hexpairs Parser. Such manipulation leads to integer overflow. The attack needs to be performed locally. The exploit is publicly available and might be used. The name of the pat
nvd
CVE-2026-14761P4MEDIUMCVSS 5.5fixed in 6.1.82026-07-05
CVE-2026-14761 [MEDIUM] CWE-189 CVE-2026-14761: A security vulnerability has been detected in radareorg radare2 up to 6.1.6. The affected element is
A security vulnerability has been detected in radareorg radare2 up to 6.1.6. The affected element is the function r_str_ndup/r_str_append of the file libr/util/str.c. The manipulation leads to integer overflow. An attack has to be approached locally. The exploit has been disclosed publicly and may be used. The identifier of the patch is a20a56917ae8
nvd
CVE-2022-1207P4MEDIUMCVSS 6.6fixed in 5.6.82022-04-01
CVE-2022-1207 [MEDIUM] CWE-125 CVE-2022-1207: Out-of-bounds read in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability allows
Out-of-bounds read in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability allows attackers to read sensitive information from outside the allocated buffer boundary.
nvd
CVE-2026-14786P4MEDIUMCVSS 5.5fixed in 6.1.82026-07-06
CVE-2026-14786 [MEDIUM] CWE-189 CVE-2026-14786: A security flaw has been discovered in radareorg radare2 up to 6.1.6. This impacts the function r_st
A security flaw has been discovered in radareorg radare2 up to 6.1.6. This impacts the function r_str_word_get0set of the file libr/util/str.c. The manipulation results in integer overflow. The attack must be initiated from a local position. The exploit has been released to the public and may be used for attacks. The patch is identified as 11ac224c0
nvd
CVE-2022-1383P4MEDIUMCVSS 6.1fixed in 5.6.82022-04-18
CVE-2022-1383 [MEDIUM] CWE-122 CVE-2022-1383: Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.8. The bug causes the
Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.8. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash.
nvd
CVE-2021-32613P4MEDIUMCVSS 5.5≤ 5.3.0vradare2 versions before and including 5.3.02021-05-14
CVE-2021-32613 [MEDIUM] CWE-416 CVE-2021-32613: In radare2 through 5.3.0 there is a double free vulnerability in the pyc parse via a crafted file wh
In radare2 through 5.3.0 there is a double free vulnerability in the pyc parse via a crafted file which can lead to DoS.
nvd
CVE-2021-44975P4MEDIUMCVSS 5.5v5.5.22022-05-24
CVE-2021-44975 [MEDIUM] CWE-119 CVE-2021-44975: radareorg radare2 5.5.2 is vulnerable to Buffer Overflow via /libr/core/anal_objc.c mach-o parser.
radareorg radare2 5.5.2 is vulnerable to Buffer Overflow via /libr/core/anal_objc.c mach-o parser.
nvd
CVE-2022-1649P4MEDIUMCVSS 5.5fixed in 5.7.02022-05-10
CVE-2022-1649 [MEDIUM] CWE-476 CVE-2022-1649: Null pointer dereference in libr/bin/format/mach0/mach0.c in radareorg/radare2 in GitHub repository
Null pointer dereference in libr/bin/format/mach0/mach0.c in radareorg/radare2 in GitHub repository radareorg/radare2 prior to 5.7.0. It is likely to be exploitable. For more general description of heap buffer overflow, see [CWE](https://cwe.mitre.org/data/definitions/476.html).
nvd
CVE-2017-7274P4MEDIUMCVSS 5.5v1.3.02017-03-27
CVE-2017-7274 [MEDIUM] CWE-476 CVE-2017-7274: The r_pkcs7_parse_cms function in libr/util/r_pkcs7.c in radare2 1.3.0 allows remote attackers to ca
The r_pkcs7_parse_cms function in libr/util/r_pkcs7.c in radare2 1.3.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PE file.
nvdosv
CVE-2017-16359P4MEDIUMCVSS 5.5v2.0.12017-11-01
CVE-2017-16359 [MEDIUM] CWE-476 CVE-2017-16359: In radare 2.0.1, a pointer wraparound vulnerability exists in store_versioninfo_gnu_verdef() in libr
In radare 2.0.1, a pointer wraparound vulnerability exists in store_versioninfo_gnu_verdef() in libr/bin/format/elf/elf.c.
nvdosv
CVE-2018-20460P4MEDIUMCVSS 5.5fixed in 3.1.22018-12-25
CVE-2018-20460 [MEDIUM] CWE-787 CVE-2018-20460: In radare2 prior to 3.1.2, the parseOperands function in libr/asm/arch/arm/armass64.c allows attacke
In radare2 prior to 3.1.2, the parseOperands function in libr/asm/arch/arm/armass64.c allows attackers to cause a denial-of-service (application crash caused by stack-based buffer overflow) by crafting an input file.
nvd
CVE-2018-20455P4MEDIUMCVSS 5.5fixed in 3.1.12018-12-25
CVE-2018-20455 [MEDIUM] CWE-787 CVE-2018-20455: In radare2 prior to 3.1.1, the parseOperand function inside libr/asm/p/asm_x86_nz.c may allow attack
In radare2 prior to 3.1.1, the parseOperand function inside libr/asm/p/asm_x86_nz.c may allow attackers to cause a denial of service (application crash via a stack-based buffer overflow) by crafting an input file, a related issue to CVE-2018-20456.
nvd
CVE-2018-10187P4MEDIUMCVSS 5.5v2.5.02018-04-17
CVE-2018-10187 [MEDIUM] CWE-125 CVE-2018-10187: In radare2 2.5.0, there is a heap-based buffer over-read in the dalvik_op function (libr/anal/p/anal
In radare2 2.5.0, there is a heap-based buffer over-read in the dalvik_op function (libr/anal/p/anal_dalvik.c). Remote attackers could leverage this vulnerability to cause a denial of service via a crafted DEX file. Note that this issue is different from CVE-2018-8809, which was patched earlier.
nvd