Radare2
by Radare
Source repositories
CVEs (173)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-5645 | Low | 0.00 | 2.5 | 0.00 | Jun 5, 2025 | A vulnerability, which was classified as problematic, was found in Radare2 5.9.9. This affects the function r_cons_pal_init in the library /libr/cons/pal.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. Attacking locally is a… | ||
| CVE-2025-5644 | Low | 0.00 | 2.5 | 0.00 | Jun 5, 2025 | A vulnerability, which was classified as problematic, has been found in Radare2 5.9.9. Affected by this issue is the function r_cons_flush in the library /libr/cons/cons.c of the component radiff2. The manipulation of the argument -T leads to use after free. Local access is… | ||
| CVE-2025-5643 | Low | 0.00 | 2.5 | 0.00 | Jun 5, 2025 | A vulnerability classified as problematic was found in Radare2 5.9.9. Affected by this vulnerability is the function cons_stack_load in the library /libr/cons/cons.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. An attack has to be… | ||
| CVE-2025-5642 | Low | 0.00 | 2.5 | 0.00 | Jun 5, 2025 | A vulnerability classified as problematic has been found in Radare2 5.9.9. Affected is the function r_cons_pal_init in the library /libr/cons/pal.c of the component radiff2. The manipulation leads to memory corruption. The attack needs to be approached locally. The complexity of… | ||
| CVE-2025-5641 | Low | 0.00 | 2.5 | 0.00 | Jun 5, 2025 | A vulnerability was found in Radare2 5.9.9. It has been rated as problematic. This issue affects the function r_cons_is_breaked in the library /libr/cons/cons.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. It is possible to launch the… | ||
| CVE-2025-1864 | Cri | 0.00 | 9.8 | 0.00 | Mar 3, 2025 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in radareorg radare2 allows Overflow Buffers.This issue affects radare2: before <5.9.9. | ||
| CVE-2025-1744 | Cri | 0.00 | 9.8 | 0.00 | Feb 28, 2025 | Out-of-bounds Write vulnerability in radareorg radare2 allows heap-based buffer over-read or buffer overflow.This issue affects radare2: before <5.9.9. | ||
| CVE-2025-1378 | Low | 0.00 | 3.3 | 0.00 | Feb 17, 2025 | A vulnerability, which was classified as problematic, was found in radare2 5.9.9 33286. Affected is an unknown function in the library /libr/main/rasm2.c of the component rasm2. The manipulation leads to memory corruption. An attack has to be approached locally. The exploit has… | ||
| CVE-2024-29646 | Cri | 0.00 | 9.8 | 0.01 | Dec 17, 2024 | Buffer Overflow vulnerability in radarorg radare2 v.5.8.8 allows an attacker to execute arbitrary code via the name, type, or group fields. | ||
| CVE-2024-29645 | Hig | 0.00 | 7.8 | 0.00 | Dec 2, 2024 | Buffer Overflow vulnerability in radarorg radare2 v.5.8.8 allows an attacker to execute arbitrary code via the parse_die function. | ||
| CVE-2024-48241 | Med | 0.00 | 5.5 | 0.00 | Oct 30, 2024 | An issue in radare2 v5.8.0 through v5.9.4 allows a local attacker to cause a denial of service via the __bf_div function. | ||
| CVE-2023-47016 | Hig | 0.00 | 7.5 | 0.01 | Nov 22, 2023 | radare2 5.8.9 has an out-of-bounds read in r_bin_object_set_items in libr/bin/bobj.c, causing a crash in r_read_le32 in libr/include/r_endian.h. | ||
| CVE-2023-5686 | Hig | 0.00 | 8.8 | 0.01 | Oct 20, 2023 | Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.9.0. | ||
| CVE-2022-28073 | Hig | 0.00 | 7.5 | 0.01 | Aug 22, 2023 | A use after free in r_reg_set_value function in radare2 5.4.2 and 5.4.0. | ||
| CVE-2022-28072 | Hig | 0.00 | 7.5 | 0.01 | Aug 22, 2023 | A heap buffer overflow in r_read_le32 function in radare25.4.2 and 5.4.0. | ||
| CVE-2022-28071 | Hig | 0.00 | 7.5 | 0.01 | Aug 22, 2023 | A use after free in r_reg_get_name_idx function in radare2 5.4.2 and 5.4.0. | ||
| CVE-2022-28070 | Hig | 0.00 | 7.5 | 0.01 | Aug 22, 2023 | A null pointer deference in __core_anal_fcn function in radare2 5.4.2 and 5.4.0. | ||
| CVE-2022-28069 | Hig | 0.00 | 7.5 | 0.01 | Aug 22, 2023 | A heap buffer overflow in vax_opfunction in radare2 5.4.2 and 5.4.0. | ||
| CVE-2022-28068 | Hig | 0.00 | 7.5 | 0.01 | Aug 22, 2023 | A heap buffer overflow in r_sleb128 function in radare2 5.4.2 and 5.4.0. | ||
| CVE-2023-4322 | Cri | 0.00 | 9.8 | 0.01 | Aug 14, 2023 | Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.9.0. |
- risk 0.00cvss 2.5epss 0.00
A vulnerability, which was classified as problematic, was found in Radare2 5.9.9. This affects the function r_cons_pal_init in the library /libr/cons/pal.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. Attacking locally is a…
- risk 0.00cvss 2.5epss 0.00
A vulnerability, which was classified as problematic, has been found in Radare2 5.9.9. Affected by this issue is the function r_cons_flush in the library /libr/cons/cons.c of the component radiff2. The manipulation of the argument -T leads to use after free. Local access is…
- risk 0.00cvss 2.5epss 0.00
A vulnerability classified as problematic was found in Radare2 5.9.9. Affected by this vulnerability is the function cons_stack_load in the library /libr/cons/cons.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. An attack has to be…
- risk 0.00cvss 2.5epss 0.00
A vulnerability classified as problematic has been found in Radare2 5.9.9. Affected is the function r_cons_pal_init in the library /libr/cons/pal.c of the component radiff2. The manipulation leads to memory corruption. The attack needs to be approached locally. The complexity of…
- risk 0.00cvss 2.5epss 0.00
A vulnerability was found in Radare2 5.9.9. It has been rated as problematic. This issue affects the function r_cons_is_breaked in the library /libr/cons/cons.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. It is possible to launch the…
- risk 0.00cvss 9.8epss 0.00
Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in radareorg radare2 allows Overflow Buffers.This issue affects radare2: before <5.9.9.
- risk 0.00cvss 9.8epss 0.00
Out-of-bounds Write vulnerability in radareorg radare2 allows heap-based buffer over-read or buffer overflow.This issue affects radare2: before <5.9.9.
- risk 0.00cvss 3.3epss 0.00
A vulnerability, which was classified as problematic, was found in radare2 5.9.9 33286. Affected is an unknown function in the library /libr/main/rasm2.c of the component rasm2. The manipulation leads to memory corruption. An attack has to be approached locally. The exploit has…
- risk 0.00cvss 9.8epss 0.01
Buffer Overflow vulnerability in radarorg radare2 v.5.8.8 allows an attacker to execute arbitrary code via the name, type, or group fields.
- risk 0.00cvss 7.8epss 0.00
Buffer Overflow vulnerability in radarorg radare2 v.5.8.8 allows an attacker to execute arbitrary code via the parse_die function.
- risk 0.00cvss 5.5epss 0.00
An issue in radare2 v5.8.0 through v5.9.4 allows a local attacker to cause a denial of service via the __bf_div function.
- risk 0.00cvss 7.5epss 0.01
radare2 5.8.9 has an out-of-bounds read in r_bin_object_set_items in libr/bin/bobj.c, causing a crash in r_read_le32 in libr/include/r_endian.h.
- risk 0.00cvss 8.8epss 0.01
Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.9.0.
- risk 0.00cvss 7.5epss 0.01
A use after free in r_reg_set_value function in radare2 5.4.2 and 5.4.0.
- risk 0.00cvss 7.5epss 0.01
A heap buffer overflow in r_read_le32 function in radare25.4.2 and 5.4.0.
- risk 0.00cvss 7.5epss 0.01
A use after free in r_reg_get_name_idx function in radare2 5.4.2 and 5.4.0.
- risk 0.00cvss 7.5epss 0.01
A null pointer deference in __core_anal_fcn function in radare2 5.4.2 and 5.4.0.
- risk 0.00cvss 7.5epss 0.01
A heap buffer overflow in vax_opfunction in radare2 5.4.2 and 5.4.0.
- risk 0.00cvss 7.5epss 0.01
A heap buffer overflow in r_sleb128 function in radare2 5.4.2 and 5.4.0.
- risk 0.00cvss 9.8epss 0.01
Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.9.0.
Page 5 of 9