CVE-2017-6448: Buffer Overflow
The dalvikdisassemble function in libr/asm/p/asmdalvik.c in radare2 1.2.1 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted DEX file.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-6448?
CVE-2017-6448 is classified as a high severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2017-6448?
To fix CVE-2017-6448, upgrade radare2 to version 1.3.0 or later, as this version addresses the vulnerability.
What does CVE-2017-6448 affect?
CVE-2017-6448 affects radare2 version 1.2.1 specifically, allowing remote attackers to exploit it.
What type of vulnerability is CVE-2017-6448?
CVE-2017-6448 is a stack-based buffer overflow vulnerability leading to application crashes or denial of service.
Can CVE-2017-6448 allow remote code execution?
CVE-2017-6448 does not explicitly allow remote code execution but may lead to unspecified impacts including service disruptions.