CVE-2017-6194: Buffer Overflow
The relocs function in libr/bin/p/binbflt.c in radare2 1.2.1 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-6194?
CVE-2017-6194 is classified as a medium severity vulnerability that can lead to a denial of service and potential application crashes.
How do I fix CVE-2017-6194?
To fix CVE-2017-6194, you should upgrade to a newer version of radare2 that has addressed this vulnerability.
What type of attack does CVE-2017-6194 enable?
CVE-2017-6194 enables remote attackers to execute a denial of service attack through a heap-based buffer overflow.
Which version of radare2 is affected by CVE-2017-6194?
CVE-2017-6194 specifically affects radare2 version 1.2.1.
Can CVE-2017-6194 lead to data loss?
While CVE-2017-6194 primarily causes application crashes, it may lead to data loss depending on the circumstances of the attack.