Vulnerability index

Browse CVEs

137 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2023-46570 An out-of-bounds read in radare2 v.5.8.9 and before exists in the print_insn32 function of libr/arch/p/nds32/nds32-dis.h. Radare2 5.9.0+ Fix from $2,3002023-10-28 HIGH 7.5 CVE-2022-28068 A heap buffer overflow in r_sleb128 function in radare2 5.4.2 and 5.4.0. Radare2 Patch available Fix from $1,9502023-08-22 HIGH 7.5 CVE-2022-28069 A heap buffer overflow in vax_opfunction in radare2 5.4.2 and 5.4.0. Radare2 Patch available Fix from $1,9502023-08-22 HIGH 7.5 CVE-2022-28070 A null pointer deference in __core_anal_fcn function in radare2 5.4.2 and 5.4.0. Radare2 Patch available Fix from $1,9502023-08-22 HIGH 7.5 CVE-2022-28071 A use after free in r_reg_get_name_idx function in radare2 5.4.2 and 5.4.0. Radare2 Patch available Fix from $1,9502023-08-22 HIGH 7.5 CVE-2022-28072 A heap buffer overflow in r_read_le32 function in radare25.4.2 and 5.4.0. Radare2 Patch available Fix from $1,9502023-08-22 HIGH 7.5 CVE-2022-28073 A use after free in r_reg_set_value function in radare2 5.4.2 and 5.4.0. Radare2 Patch available Fix from $1,9502023-08-22 CRITICAL 9.1 CVE-2021-32495 Radare2 has a use-after-free vulnerability in pyc parser's get_none_object function. Attacker can read freed memory afterwards. This will allow attac… Radare2 Patch available Fix from $2,3002023-07-07 HIGH 7.5 CVE-2021-32494 Radare2 has a division by zero vulnerability in Mach-O parser's rebase_buffer function. This allow attackers to create malicious inputs that can caus… Radare2 Patch available Fix from $1,9502023-07-07 HIGH 7.5 CVE-2023-1605 Denial of Service in GitHub repository radareorg/radare2 prior to 5.8.6. Radare2 5.8.6+ Fix from $1,9502023-03-23 MEDIUM 5.5 CVE-2023-27114 radare2 v5.8.3 was discovered to contain a segmentation fault via the component wasm_dis at p/wasm/wasm.c. Radare2 Patch available Fix from $1,6002023-03-10 HIGH 7.8 CVE-2023-0302 Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository radareorg/radare2 prior to 5.8.2. Radare2 5.8.2+ Fix from $1,9502023-01-15 HIGH 7.5 CVE-2022-4843 NULL Pointer Dereference in GitHub repository radareorg/radare2 prior to 5.8.2. Radare2 5.8.2+ Fix from $1,9502022-12-29 HIGH 7.8 CVE-2022-4398 Integer Overflow or Wraparound in GitHub repository radareorg/radare2 prior to 5.8.0. Radare2 5.8.0+ Fix from $1,9502022-12-10 CRITICAL 9.1 CVE-2020-27794 A double free issue was discovered in radare2 in cmd_info.c:cmd_info(). Successful exploitation could lead to modification of unexpected memory locat… Radare2 4.4.0+ Fix from $2,3002022-08-19 HIGH 7.5 CVE-2020-27793 An off-by-one overflow flaw was found in radare2 due to mismatched array length in core_java.c. This could allow an attacker to cause a crash, and pe… Radare2 4.4.0+ Fix from $1,9502022-08-19 HIGH 7.5 CVE-2020-27795 A segmentation fault was discovered in radare2 with adf command. In libr/core/cmd_anal.c, when command "adf" has no or wrong argument, anal_fcn_data … Radare2 4.4.0+ Fix from $1,9502022-08-19 MEDIUM 5.5 CVE-2022-34502 Radare2 v5.7.0 was discovered to contain a heap buffer overflow via the function consume_encoded_name_new at format/wasm/wasm.c. This vulnerability a… Radare2 No fix yet Fix from $1,6002022-07-22 MEDIUM 5.5 CVE-2022-34520 Radare2 v5.7.2 was discovered to contain a NULL pointer dereference via the function r_bin_file_xtr_load_buffer at bin/bfile.c. This vulnerability al… Radare2 No fix yet Fix from $1,6002022-07-22 CRITICAL 9.1 CVE-2022-1899 Out-of-bounds Read in GitHub repository radareorg/radare2 prior to 5.7.0. Radare2 5.7.0+ Fix from $2,3002022-05-26 MEDIUM 5.5 CVE-2021-44974 radareorg radare2 version 5.5.2 is vulnerable to NULL Pointer Dereference via libr/bin/p/bin_symbols.c binary symbol parser. Radare2 5.5.4+ Fix from $1,6002022-05-25 MEDIUM 5.5 CVE-2021-44975 radareorg radare2 5.5.2 is vulnerable to Buffer Overflow via /libr/core/anal_objc.c mach-o parser. Radare2 Patch available Fix from $1,6002022-05-24 HIGH 7.8 CVE-2022-1809 Access of Uninitialized Pointer in GitHub repository radareorg/radare2 prior to 5.7.0. Radare2 5.7.0+ Fix from $1,9502022-05-21 HIGH 7.1 CVE-2022-1714 Out-of-bounds Read in GitHub repository radareorg/radare2 prior to 5.7.0. The bug causes the program reads data past the end of the intented buffer. … Radare2 5.7.0+ Fix from $1,9502022-05-13 MEDIUM 5.5 CVE-2022-1649 Null pointer dereference in libr/bin/format/mach0/mach0.c in radareorg/radare2 in GitHub repository radareorg/radare2 prior to 5.7.0. It is likely to… Radare2 5.7.0+ Fix from $1,6002022-05-10 HIGH 7.1 CVE-2022-1451 Out-of-bounds Read in r_bin_java_constant_value_attr_new function in GitHub repository radareorg/radare2 prior to 5.7.0. The bug causes the program r… Radare2 5.7.0+ Fix from $1,9502022-04-24 HIGH 7.1 CVE-2022-1452 Out-of-bounds Read in r_bin_java_bootstrap_methods_attr_new function in GitHub repository radareorg/radare2 prior to 5.7.0. The bug causes the progra… Radare2 5.7.0+ Fix from $1,9502022-04-24 MEDIUM 5.5 CVE-2022-1444 heap-use-after-free in GitHub repository radareorg/radare2 prior to 5.7.0. This vulnerability is capable of inducing denial of service. Radare2 5.7.0+ Fix from $1,6002022-04-23 HIGH 7.1 CVE-2022-1437 Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.7.0. The bug causes the program reads data past the end of the intented … Radare2 5.7.0+ Fix from $1,9502022-04-22 MEDIUM 6.1 CVE-2022-1383 Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.8. The bug causes the program reads data past the end of the intented … Radare2 5.6.8+ Fix from $1,6002022-04-18