First published: Wed Apr 06 2022(Updated: )
Out-of-bounds Write in libr/bin/format/ne/ne.c in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability is heap overflow and may be exploitable. For more general description of heap buffer overflow, see [CWE](https://cwe.mitre.org/data/definitions/122.html).
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
radare2 | <5.6.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-1238 is a vulnerability in GitHub repository radareorg/radare2 prior to version 5.6.8, which allows an out-of-bounds write in libr/bin/format/ne/ne.c.
The severity of CVE-2022-1238 is high with a severity value of 7.8.
CVE-2022-1238 affects Radare Radare2 versions up to and excluding 5.6.8.
CVE-2022-1238 is a heap overflow vulnerability and may be exploitable.
To fix CVE-2022-1238, update your Radare Radare2 installation to version 5.6.8 or later.