CVE-2017-16358: High severity radare2 vulnerability
Published Nov 1, 2017
·Updated
In radare 2.0.1, an out-of-bounds read vulnerability exists in stringscanrange() in libr/bin/bin.c when doing a string search.
Affected Software
1 affected component
Radare Radare2=2.0.1
Remediation
Patch Available
Event History
Nov 1, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-16358?
CVE-2017-16358 is classified as a moderate severity vulnerability due to its potential for out-of-bounds read exploits.
2
How do I fix CVE-2017-16358?
To remediate CVE-2017-16358, upgrade radare2 to version 2.0.2 or later.
3
What systems are affected by CVE-2017-16358?
CVE-2017-16358 specifically affects radare version 2.0.1.
4
What type of vulnerability is CVE-2017-16358?
CVE-2017-16358 is an out-of-bounds read vulnerability that occurs during string searching.
5
How can CVE-2017-16358 impact my application?
Exploitation of CVE-2017-16358 could lead to a denial of service or potential disclosure of sensitive data.