First published: Fri Apr 01 2022(Updated: )
Out-of-bounds read in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability allows attackers to read sensitive information from outside the allocated buffer boundary.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Radare Radare2 | <5.6.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-1207 is an out-of-bounds read vulnerability in the GitHub repository radareorg/radare2 prior to version 5.6.8.
CVE-2022-1207 allows attackers to read sensitive information from outside the allocated buffer boundary in Radare Radare2.
The severity of CVE-2022-1207 is medium, with a severity value of 6.6.
To fix CVE-2022-1207 in Radare Radare2, update to version 5.6.8 or higher.
You can find more information about CVE-2022-1207 in the following references: [GitHub commit](https://github.com/radareorg/radare2/commit/605785b65dd356d46d4487faa41dbf90943b8bc1) and [Huntr bounty](https://huntr.dev/bounties/7b979e76-ae54-4132-b455-0833e45195eb).