VYPR

Vendor CVEs

Radare

All CVEs

174 total · sorted by risk
  • CVE-2017-7946MedApr 18, 2017
    risk 0.36cvss 5.5epss 0.01

    The get_relocs_64 function in libr/bin/format/mach0/mach0.c in radare2 1.3.0 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted Mach0 file.

  • CVE-2017-7854MedApr 13, 2017
    risk 0.36cvss 5.5epss 0.01

    The consume_init_expr function in wasm.c in radare2 1.3.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted Web Assembly file.

  • CVE-2017-7716MedApr 12, 2017
    risk 0.36cvss 5.5epss 0.01

    The read_u32_leb128 function in libr/util/uleb128.c in radare2 1.3.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted Web Assembly file.

  • CVE-2017-7274MedMar 27, 2017
    risk 0.36cvss 5.5epss 0.02

    The r_pkcs7_parse_cms function in libr/util/r_pkcs7.c in radare2 1.3.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PE file.

  • CVE-2017-6415MedMar 2, 2017
    risk 0.36cvss 5.5epss 0.01

    The dex_parse_debug_item function in libr/bin/p/bin_dex.c in radare2 1.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted DEX file.

  • CVE-2017-6387MedMar 2, 2017
    risk 0.36cvss 5.5epss 0.01

    The dex_loadcode function in libr/bin/p/bin_dex.c in radare2 1.2.1 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted DEX file.

  • CVE-2017-6197MedFeb 24, 2017
    risk 0.36cvss 5.5epss 0.02

    The r_read_* functions in libr/include/r_endian.h in radare2 1.2.1 allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted binary file, as demonstrated by the r_read_le32 function.

  • CVE-2018-15834MedSep 12, 2018
    risk 0.29cvss 5.5epss 0.01

    In radare2 before 2.9.0, a heap overflow vulnerability exists in the read_module_referenced_functions function in libr/anal/flirt.c via a crafted flirt signature file.

  • CVE-2018-14017MedJul 12, 2018
    risk 0.29cvss 5.5epss 0.01

    The r_bin_java_annotation_new function in shlr/java/class.c in radare2 2.7.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted .class file because of missing input validation in…

  • CVE-2018-14016MedJul 12, 2018
    risk 0.29cvss 5.5epss 0.01

    The r_bin_mdmp_init_directory_entry function in mdmp.c in radare2 2.7.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted Mini Crash Dump file.

  • CVE-2018-14015MedJul 12, 2018
    risk 0.29cvss 5.5epss 0.01

    The sdb_set_internal function in sdb.c in radare2 2.7.0 allows remote attackers to cause a denial of service (invalid read and application crash) via a crafted ELF file because of missing input validation in r_bin_dwarf_parse_comp_unit in libr/bin/dwarf.c.

  • CVE-2026-14757MedJul 5, 2026
    risk 0.27cvss 5.3epss 0.00

    A vulnerability was determined in radareorg radare2 up to 6.1.6. This affects the function core_anal_bytes of the file libr/core/cmd_anal.inc. This manipulation causes integer overflow. The attack needs to be launched locally. The exploit has been publicly disclosed and may be…

  • CVE-2026-14789LowJul 6, 2026
    risk 0.14cvss 3.3epss 0.00

    A vulnerability was detected in radareorg radare2 up to 6.1.6. Affected by this issue is some unknown functionality of the file libr/bin/format/mdmp/mdmp.c of the component Memory64ListStream Parser. Performing a manipulation results in stack-based buffer overflow. The attack…

  • CVE-2026-14788LowJul 6, 2026
    risk 0.14cvss 3.3epss 0.00

    A security vulnerability has been detected in radareorg radare2 up to 6.1.6. Affected by this vulnerability is the function r_core_bin_load of the file libr/core/cfile.c. Such manipulation leads to use after free. The attack needs to be performed locally. The exploit has been…

  • CVE-2026-14787LowJul 6, 2026
    risk 0.14cvss 3.3epss 0.00

    A weakness has been identified in radareorg radare2 up to 6.1.6. Affected is the function cmd_print in the library libr/core/cmd_print.inc of the component pb Print Command Handler. This manipulation causes integer overflow. The attack needs to be launched locally. The exploit…

  • CVE-2026-14786LowJul 6, 2026
    risk 0.14cvss 3.3epss 0.00

    A security flaw has been discovered in radareorg radare2 up to 6.1.6. This impacts the function r_str_word_get0set of the file libr/util/str.c. The manipulation results in integer overflow. The attack must be initiated from a local position. The exploit has been released to the…

  • CVE-2026-14761LowJul 5, 2026
    risk 0.14cvss 3.3epss 0.00

    A security vulnerability has been detected in radareorg radare2 up to 6.1.6. The affected element is the function r_str_ndup/r_str_append of the file libr/util/str.c. The manipulation leads to integer overflow. An attack has to be approached locally. The exploit has been…

  • CVE-2026-14760LowJul 5, 2026
    risk 0.14cvss 3.3epss 0.00

    A weakness has been identified in radareorg radare2 up to 6.1.6. Impacted is the function r_core_seek_arch_bits of the file libr/core/disasm.c of the component regprofile Handler. Executing a manipulation can lead to use after free. The attack requires local access. The exploit…

  • CVE-2026-14759LowJul 5, 2026
    risk 0.14cvss 3.3epss 0.00

    A security flaw has been discovered in radareorg radare2 up to 6.1.6. This issue affects the function r_bin_java_inner_classes_attr_calc_size of the file shlr/java/class.c of the component RBinJava Line Number Table Parser. Performing a manipulation results in heap-based buffer…

  • CVE-2026-14758LowJul 5, 2026
    risk 0.14cvss 3.3epss 0.00

    A vulnerability was identified in radareorg radare2 up to 6.1.6. This vulnerability affects the function cmd_anal_opcode of the file libr/core/cmd_anal.inc.c of the component hexpairs Parser. Such manipulation leads to integer overflow. The attack needs to be performed locally.…

  • CVE-2026-4174LowMar 16, 2026
    risk 0.14cvss 3.3epss 0.00

    A vulnerability has been found in Radare2 5.9.9. This issue affects the function walk_exports_trie of the file libr/bin/format/mach0/mach0.c of the component Mach-O File Parser. Such manipulation leads to resource consumption. The attack can only be performed from a local…

  • CVE-2025-63745MedNov 14, 2025
    risk 0.00cvss 5.5epss 0.00

    A NULL pointer dereference vulnerability was discovered in radare2 6.0.5 and earlier within the info() function of bin_ne.c. A crafted binary input can trigger a segmentation fault, leading to a denial of service when the tool processes malformed data.

  • CVE-2025-63744MedNov 14, 2025
    risk 0.00cvss 4.3epss 0.00

    A NULL pointer dereference vulnerability was discovered in radare2 6.0.5 and earlier within the load() function of bin_dyldcache.c. Processing a crafted file can cause a segmentation fault and crash the program.

  • CVE-2025-60361LowOct 17, 2025
    risk 0.00cvss 3.3epss 0.00

    radare2 v5.9.8 and before contains a memory leak in the function bochs_open.

  • CVE-2025-60360MedOct 17, 2025
    risk 0.00cvss 5.5epss 0.00

    radare2 v5.9.8 and before contains a memory leak in the function r2r_subprocess_init.

  • CVE-2025-60359MedOct 17, 2025
    risk 0.00cvss 5.5epss 0.00

    radare2 v5.9.8 and before contains a memory leak in the function r_bin_object_new.

  • CVE-2025-60358MedOct 16, 2025
    risk 0.00cvss 5.5epss 0.00

    radare2 v.5.9.8 and before contains a memory leak in the function _load_relocations.

  • CVE-2025-5648LowJun 5, 2025
    risk 0.00cvss 2.5epss 0.00

    A vulnerability was found in Radare2 5.9.9. It has been classified as problematic. Affected is the function r_cons_pal_init in the library /libr/cons/pal.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. An attack has to be approached…

  • CVE-2025-5647LowJun 5, 2025
    risk 0.00cvss 2.5epss 0.00

    A vulnerability was found in Radare2 5.9.9 and classified as problematic. This issue affects the function r_cons_context_break_pop in the library /libr/cons/cons.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. The attack needs to be…

  • CVE-2025-5646LowJun 5, 2025
    risk 0.00cvss 2.5epss 0.00

    A vulnerability has been found in Radare2 5.9.9 and classified as problematic. This vulnerability affects the function r_cons_rainbow_free in the library /libr/cons/pal.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. It is possible to…

  • CVE-2025-5645LowJun 5, 2025
    risk 0.00cvss 2.5epss 0.00

    A vulnerability, which was classified as problematic, was found in Radare2 5.9.9. This affects the function r_cons_pal_init in the library /libr/cons/pal.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. Attacking locally is a…

  • CVE-2025-5644LowJun 5, 2025
    risk 0.00cvss 2.5epss 0.00

    A vulnerability, which was classified as problematic, has been found in Radare2 5.9.9. Affected by this issue is the function r_cons_flush in the library /libr/cons/cons.c of the component radiff2. The manipulation of the argument -T leads to use after free. Local access is…

  • CVE-2025-5643LowJun 5, 2025
    risk 0.00cvss 2.5epss 0.00

    A vulnerability classified as problematic was found in Radare2 5.9.9. Affected by this vulnerability is the function cons_stack_load in the library /libr/cons/cons.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. An attack has to be…

  • CVE-2025-5642LowJun 5, 2025
    risk 0.00cvss 2.5epss 0.00

    A vulnerability classified as problematic has been found in Radare2 5.9.9. Affected is the function r_cons_pal_init in the library /libr/cons/pal.c of the component radiff2. The manipulation leads to memory corruption. The attack needs to be approached locally. The complexity of…

  • CVE-2025-5641LowJun 5, 2025
    risk 0.00cvss 2.5epss 0.00

    A vulnerability was found in Radare2 5.9.9. It has been rated as problematic. This issue affects the function r_cons_is_breaked in the library /libr/cons/cons.c of the component radiff2. The manipulation of the argument -T leads to memory corruption. It is possible to launch the…

  • CVE-2025-1864CriMar 3, 2025
    risk 0.00cvss 9.8epss 0.00

    Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in radareorg radare2 allows Overflow Buffers.This issue affects radare2: before <5.9.9.

  • CVE-2025-1744CriFeb 28, 2025
    risk 0.00cvss 9.8epss 0.00

    Out-of-bounds Write vulnerability in radareorg radare2 allows heap-based buffer over-read or buffer overflow.This issue affects radare2: before <5.9.9.

  • CVE-2025-1378LowFeb 17, 2025
    risk 0.00cvss 3.3epss 0.00

    A vulnerability, which was classified as problematic, was found in radare2 5.9.9 33286. Affected is an unknown function in the library /libr/main/rasm2.c of the component rasm2. The manipulation leads to memory corruption. An attack has to be approached locally. The exploit has…

  • CVE-2024-29646CriDec 17, 2024
    risk 0.00cvss 9.8epss 0.01

    Buffer Overflow vulnerability in radarorg radare2 v.5.8.8 allows an attacker to execute arbitrary code via the name, type, or group fields.

  • CVE-2024-29645HigDec 2, 2024
    risk 0.00cvss 7.8epss 0.00

    Buffer Overflow vulnerability in radarorg radare2 v.5.8.8 allows an attacker to execute arbitrary code via the parse_die function.

  • CVE-2024-48241MedOct 30, 2024
    risk 0.00cvss 5.5epss 0.00

    An issue in radare2 v5.8.0 through v5.9.4 allows a local attacker to cause a denial of service via the __bf_div function.

  • CVE-2023-47016HigNov 22, 2023
    risk 0.00cvss 7.5epss 0.01

    radare2 5.8.9 has an out-of-bounds read in r_bin_object_set_items in libr/bin/bobj.c, causing a crash in r_read_le32 in libr/include/r_endian.h.

  • CVE-2023-5686HigOct 20, 2023
    risk 0.00cvss 8.8epss 0.01

    Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.9.0.

  • CVE-2022-28073HigAug 22, 2023
    risk 0.00cvss 7.5epss 0.01

    A use after free in r_reg_set_value function in radare2 5.4.2 and 5.4.0.

  • CVE-2022-28072HigAug 22, 2023
    risk 0.00cvss 7.5epss 0.01

    A heap buffer overflow in r_read_le32 function in radare25.4.2 and 5.4.0.

  • CVE-2022-28071HigAug 22, 2023
    risk 0.00cvss 7.5epss 0.01

    A use after free in r_reg_get_name_idx function in radare2 5.4.2 and 5.4.0.

  • CVE-2022-28070HigAug 22, 2023
    risk 0.00cvss 7.5epss 0.01

    A null pointer deference in __core_anal_fcn function in radare2 5.4.2 and 5.4.0.

  • CVE-2022-28069HigAug 22, 2023
    risk 0.00cvss 7.5epss 0.01

    A heap buffer overflow in vax_opfunction in radare2 5.4.2 and 5.4.0.

  • CVE-2022-28068HigAug 22, 2023
    risk 0.00cvss 7.5epss 0.01

    A heap buffer overflow in r_sleb128 function in radare2 5.4.2 and 5.4.0.

  • CVE-2023-4322CriAug 14, 2023
    risk 0.00cvss 9.8epss 0.01

    Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.9.0.