First published: Wed Nov 01 2017(Updated: )
In radare 2.0.1, an out-of-bounds read vulnerability exists in string_scan_range() in libr/bin/bin.c when doing a string search.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Radare2 | =2.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-16358 is classified as a moderate severity vulnerability due to its potential for out-of-bounds read exploits.
To remediate CVE-2017-16358, upgrade radare2 to version 2.0.2 or later.
CVE-2017-16358 specifically affects radare version 2.0.1.
CVE-2017-16358 is an out-of-bounds read vulnerability that occurs during string searching.
Exploitation of CVE-2017-16358 could lead to a denial of service or potential disclosure of sensitive data.