CVE-2020-15121: Command injection in Radare2
Published Jul 20, 2020
·Updated
In radare2 before version 4.5.0, malformed PDB file names in the PDB server path cause shell injection. To trigger the problem it's required to open the executable in radare2 and run idpd to trigger the download. The shell code will execute, and will create a file called pwned in the current directory.
Affected Software
3 affected components
Radare Radare2<4.5.0
Fedoraproject Fedora=31
Fedoraproject Fedora=32
Remediation
Event History
Jul 20, 2020
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-15121?
CVE-2020-15121 is considered a high severity vulnerability due to its potential for shell injection.
2
How do I fix CVE-2020-15121?
To fix CVE-2020-15121, upgrade to radare2 version 4.5.0 or later.
3
What is the impact of CVE-2020-15121?
The impact of CVE-2020-15121 includes execution of arbitrary commands via shell injection.
4
Which versions of radare2 are affected by CVE-2020-15121?
All versions of radare2 prior to 4.5.0 are affected by CVE-2020-15121.
5
Can CVE-2020-15121 be exploited remotely?
Yes, CVE-2020-15121 can be exploited remotely if a malicious PDB file is hosted.