VYPR

Rizin

by Rizin

Source repositories

CVEs (23)

  • CVE-2022-36039HigSep 6, 2022
    risk 0.00cvss 7.8epss 0.00

    Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to out-of-bounds write when parsing DEX files. A user opening a malicious DEX file could be affected by this vulnerability, allowing an attacker to execute code…

  • CVE-2022-34612MedJul 27, 2022
    risk 0.00cvss 5.5epss 0.00

    Rizin v0.4.0 and below was discovered to contain an integer overflow via the function get_long_object(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted binary.

  • CVE-2021-43814HigDec 13, 2021
    risk 0.00cvss 7.7epss 0.01

    Rizin is a UNIX-like reverse engineering framework and command-line toolset. In versions up to and including 0.3.1 there is a heap-based out of bounds write in parse_die() when reversing an AMD64 ELF binary with DWARF debug info. When a malicious AMD64 ELF binary is opened by a…

Page 2 of 2