Vulnerabilities > Radare > Radare2 > 2.4.0

DATE CVE VULNERABILITY TITLE RISK
2018-12-04 CVE-2018-19843 Out-of-bounds Read vulnerability in Radare Radare2
opmov in libr/asm/p/asm_x86_nz.c in radare2 before 3.1.0 allows attackers to cause a denial of service (buffer over-read) via crafted x86 assembly data, as demonstrated by rasm2.
local
low complexity
radare CWE-125
5.5
2018-12-04 CVE-2018-19842 Out-of-bounds Read vulnerability in Radare Radare2
getToken in libr/asm/p/asm_x86_nz.c in radare2 before 3.1.0 allows attackers to cause a denial of service (stack-based buffer over-read) via crafted x86 assembly data, as demonstrated by rasm2.
local
low complexity
radare CWE-125
5.5
2018-09-12 CVE-2018-15834 Out-of-bounds Write vulnerability in Radare Radare2
In radare2 before 2.9.0, a heap overflow vulnerability exists in the read_module_referenced_functions function in libr/anal/flirt.c via a crafted flirt signature file.
local
low complexity
radare CWE-787
5.5
2018-03-20 CVE-2018-8810 Out-of-bounds Read vulnerability in Radare Radare2 2.4.0
In radare2 2.4.0, there is a heap-based buffer over-read in the get_ivar_list_t function of mach0_classes.c.
local
low complexity
radare CWE-125
5.5
2018-03-20 CVE-2018-8809 Out-of-bounds Read vulnerability in Radare Radare2 2.4.0
In radare2 2.4.0, there is a heap-based buffer over-read in the dalvik_op function of anal_dalvik.c.
local
low complexity
radare CWE-125
5.5
2018-03-20 CVE-2018-8808 Out-of-bounds Read vulnerability in Radare Radare2 2.4.0
In radare2 2.4.0, there is a heap-based buffer over-read in the r_asm_disassemble function of asm.c.
local
low complexity
radare CWE-125
5.5