« List of all CVEs

CVE-2022-1714

Out-of-bounds Read in radareorg/radare2

Published: 5/13/2022 Last updated: 8/3/2024 Reserved: 5/13/2022

Out-of-bounds Read in GitHub repository radareorg/radare2 prior to 5.7.0. The bug causes the program reads data past the end of the intented buffer. Typically, this can allow attackers to read sensitive information from other memory locations or cause a crash.

CNA assigner: @huntrdev (c09c270a-b464-47c1-9133-acb35b22c19a) Requested by: n/a

Metrics

Version Score Severity Vector String
3.0 7.9 High CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:H/A:L

Opam packages affected (2)

conf-radare2 radare2

Products affected (1)

Product Vendor Version
radareorg/radare2 radareorg <= 2.0.3

References (4)