First published: Fri Jul 22 2022(Updated: )
Radare2 v5.7.2 was discovered to contain a NULL pointer dereference via the function r_bin_file_xtr_load_buffer at bin/bfile.c. This vulnerability allows attackers to cause a Denial of Service (DOS) via a crafted binary file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Radare Radare2 | =5.7.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2022-34520.
The affected software is Radare2 version 5.7.2.
The severity of CVE-2022-34520 is medium with a severity value of 5.5.
CVE-2022-34520 is a vulnerability in Radare2 version 5.7.2 that allows attackers to cause a Denial of Service (DOS) via a crafted binary file.
To fix CVE-2022-34520, update Radare2 to a version that does not contain this vulnerability.