Search CVE reports


Toggle filters

141 – 150 of 162 results


CVE-2017-16357

Medium priority
Ignored

In radare 2.0.1, a memory corruption vulnerability exists in store_versioninfo_gnu_verdef() and store_versioninfo_gnu_verneed() in libr/bin/format/elf/elf.c, as demonstrated by an invalid free. This error is due to improper...

1 affected package

radare2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
radare2 Not affected
Show less packages

CVE-2017-15932

Medium priority
Ignored

In radare2 2.0.1, an integer exception (negative number leading to an invalid memory access) exists in store_versioninfo_gnu_verdef() in libr/bin/format/elf/elf.c via crafted ELF files when parsing the ELF version on 32bit systems.

1 affected package

radare2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
radare2 Not affected
Show less packages

CVE-2017-15931

Medium priority
Ignored

In radare2 2.0.1, an integer exception (negative number leading to an invalid memory access) exists in store_versioninfo_gnu_verneed() in libr/bin/format/elf/elf.c via crafted ELF files on 32bit systems.

1 affected package

radare2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
radare2 Not affected
Show less packages

CVE-2017-15385

Medium priority
Ignored

The store_versioninfo_gnu_verdef function in libr/bin/format/elf/elf.c in radare2 2.0.0 allows remote attackers to cause a denial of service (r_read_le16 invalid write and application crash) or possibly have unspecified other...

1 affected package

radare2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
radare2 Not affected
Show less packages

CVE-2017-15368

Medium priority
Not affected

The wasm_dis function in libr/asm/arch/wasm/wasm.c in radare2 2.0.0 allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted...

1 affected package

radare2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
radare2
Show less packages

CVE-2017-10929

Medium priority
Vulnerable

The grub_memmove function in shlr/grub/kern/misc.c in radare2 1.5.0 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted...

1 affected package

radare2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
radare2 Not affected Not affected Not in release Not affected Not affected
Show less packages

CVE-2017-9949

Medium priority
Vulnerable

The grub_memmove function in shlr/grub/kern/misc.c in radare2 1.5.0 allows remote attackers to cause a denial of service (stack-based buffer underflow and application crash) or possibly have unspecified other impact via a crafted...

1 affected package

radare2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
radare2 Not affected Not affected Not in release Not affected Not affected
Show less packages

CVE-2017-9763

Medium priority
Vulnerable

The grub_ext2_read_block function in fs/ext2.c in GNU GRUB before 2013-11-12, as used in shlr/grub/fs/ext2.c in radare2 1.5.0, allows remote attackers to cause a denial of service (excessive stack use and application crash) via a...

2 affected packages

grub2, radare2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
grub2 Not affected Not affected Not affected Not affected Not affected
radare2 Not affected Not affected Not in release Not affected Not affected
Show less packages

CVE-2017-9762

Medium priority
Vulnerable

The cmd_info function in libr/core/cmd_info.c in radare2 1.5.0 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted binary file.

1 affected package

radare2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
radare2 Not affected Not affected Not in release Not affected Not affected
Show less packages

CVE-2017-9761

Medium priority
Vulnerable

The find_eoq function in libr/core/cmd.c in radare2 1.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted binary file.

1 affected package

radare2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
radare2 Not affected Not affected Not in release Not affected Not affected
Show less packages