VendorsRadareradare2all versions
Vulnerabilities

Radare 2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

170CVEs
CVE-2022-1284
heap-use-after-free in radareorg/radare2
Published 2022-04-08 · Modified
7.5EPSS 0.008
CVE-2022-1444
heap-use-after-free in radareorg/radare2
Published 2022-04-23 · Modified
7.5EPSS 0.008
CVE-2022-4843
NULL Pointer Dereference in radareorg/radare2
Published 2022-12-29 · Modified
7.5EPSS 0.007
CVE-2022-0476
Denial of Service in radareorg/radare2
Published 2022-02-23 · Modified
7.3EPSS 0.010
CVE-2022-0849
Use After Free in r_reg_get_name_idx in radareorg/radare2
Published 2022-03-05 · Modified
7.3EPSS 0.007
CVE-2022-1052
Heap Buffer Overflow in iterate_chained_fixups in radareorg/radare2
Published 2022-03-24 · Modified
7.3EPSS 0.004
CVE-2022-0518
Heap-based Buffer Overflow in radareorg/radare2
Published 2022-02-08 · Modified
7.1EPSS 0.010
CVE-2022-0713
Heap-based Buffer Overflow in radareorg/radare2
Published 2022-02-22 · Modified
7.1EPSS 0.010
CVE-2022-0522
Access of Memory Location Before Start of Buffer in radareorg/radare2
Published 2022-02-08 · Modified
7.1EPSS 0.010
CVE-2022-0521
Access of Memory Location After End of Buffer in radareorg/radare2
Published 2022-02-08 · Modified
7.1EPSS 0.010
CVE-2022-0519
Buffer Access with Incorrect Length Value in radareorg/radare2
Published 2022-02-08 · Modified
7.1EPSS 0.010
CVE-2022-0712
NULL Pointer Dereference in radareorg/radare2
Published 2022-02-22 · Modified
7.1EPSS 0.010
CVE-2022-1452
Out-of-bounds Read in r_bin_java_bootstrap_methods_attr_new function in radareorg/radare2
Published 2022-04-24 · Modified
7.1EPSS 0.008
CVE-2022-1451
Out-of-bounds Read in r_bin_java_constant_value_attr_new function in radareorg/radare2
Published 2022-04-24 · Modified
7.1EPSS 0.008
CVE-2022-1437
Heap-based Buffer Overflow in radareorg/radare2
Published 2022-04-22 · Modified
7.1EPSS 0.008
CVE-2022-1382
NULL Pointer Dereference in radareorg/radare2
Published 2022-04-16 · Modified
7.1EPSS 0.007
CVE-2026-6940
radare2 < 6.1.4 Project Deletion Path Traversal Directory Deletion
Published 2026-04-23 · Analyzed
7.1EPSS 0.002
CVE-2022-0695
Denial of Service in radareorg/radare2
Published 2022-02-24 · Modified
6.8EPSS 0.010
CVE-2022-1207
Out-of-bounds read in radareorg/radare2
Published 2022-04-01 · Modified
6.6EPSS 0.009
CVE-2022-1283
NULL Pointer Dereference in r_bin_ne_get_entrypoints function in radareorg/radare2
Published 2022-04-08 · Modified
6.6EPSS 0.007
CVE-2022-1383
Heap-based Buffer Overflow in radareorg/radare2
Published 2022-04-17 · Modified
6.1EPSS 0.008
CVE-2022-0419
NULL Pointer Dereference in radareorg/radare2
Published 2022-02-01 · Modified
5.9EPSS 0.009
CVE-2017-6197
The r_read_* functions in libr/include/r_endian.h in radare2 1.2.1 allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted binary file, as demonstrated by the r_read_le32 function.
Published 2017-02-24 · Modified
5.5EPSS 0.016
CVE-2017-7274
The r_pkcs7_parse_cms function in libr/util/r_pkcs7.c in radare2 1.3.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PE file.
Published 2017-03-27 · Modified
5.5EPSS 0.016
CVE-2018-11377
The avr_op_analyze() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted binary file.
Published 2018-05-22 · Modified
5.5EPSS 0.014
CVE-2017-9761
The find_eoq function in libr/core/cmd.c in radare2 1.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted binary file.
Published 2017-06-19 · Modified
5.5EPSS 0.014
CVE-2017-6415
The dex_parse_debug_item function in libr/bin/p/bin_dex.c in radare2 1.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted DEX file.
Published 2017-03-02 · Modified
5.5EPSS 0.013
CVE-2018-14015
The sdb_set_internal function in sdb.c in radare2 2.7.0 allows remote attackers to cause a denial of service (invalid read and application crash) via a crafted ELF file because of missing input validation in r_bin_dwarf_parse_comp_unit in libr/bin/dwarf.c.
Published 2018-07-12 · Analyzed
5.5EPSS 0.012
CVE-2018-14016
The r_bin_mdmp_init_directory_entry function in mdmp.c in radare2 2.7.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted Mini Crash Dump file.
Published 2018-07-12 · Modified
5.5EPSS 0.012
CVE-2018-14017
The r_bin_java_annotation_new function in shlr/java/class.c in radare2 2.7.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted .class file because of missing input validation in r_bin_java_line_number_table_attr_new.
Published 2018-07-12 · Modified
5.5EPSS 0.012
CVE-2017-16359
In radare 2.0.1, a pointer wraparound vulnerability exists in store_versioninfo_gnu_verdef() in libr/bin/format/elf/elf.c.
Published 2017-11-01 · Modified
5.5EPSS 0.012
CVE-2021-32613
In radare2 through 5.3.0 there is a double free vulnerability in the pyc parse via a crafted file which can lead to DoS.
Published 2021-05-14 · Modified
5.5EPSS 0.012
CVE-2018-11382
The _inst__sts() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted binary file.
Published 2018-05-22 · Modified
5.5EPSS 0.012
CVE-2018-11383
The r_strbuf_fini() function in radare2 2.5.0 allows remote attackers to cause a denial of service (invalid free and application crash) via a crafted ELF file because of an uninitialized variable in the CPSE handler in libr/anal/p/anal_avr.c.
Published 2018-05-22 · Modified
5.5EPSS 0.012
CVE-2018-11375
The _inst__lds() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted binary file.
Published 2018-05-22 · Modified
5.5EPSS 0.012
CVE-2018-11379
The get_debug_info() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted PE file.
Published 2018-05-22 · Modified
5.5EPSS 0.012
CVE-2018-11384
The sh_op() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted ELF file.
Published 2018-05-22 · Modified
5.5EPSS 0.012
CVE-2018-11376
The r_read_le32() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted ELF file.
Published 2018-05-22 · Modified
5.5EPSS 0.012
CVE-2018-8810
In radare2 2.4.0, there is a heap-based buffer over-read in the get_ivar_list_t function of mach0_classes.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted Mach-O file.
Published 2018-03-20 · Modified
5.5EPSS 0.011
CVE-2018-8809
In radare2 2.4.0, there is a heap-based buffer over-read in the dalvik_op function of anal_dalvik.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted dex file.
Published 2018-03-20 · Modified
5.5EPSS 0.011
← Prev3 / 5Next →