CVE-2023-46570: Critical severity radare2 vulnerability
Published Oct 28, 2023
·Updated
An out-of-bounds read in radare2 v.5.8.9 and before exists in the printinsn32 function of libr/arch/p/nds32/nds32-dis.h.
Affected Software
1 affected component
Radare Radare2<5.9.0
Event History
Oct 28, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-46570?
CVE-2023-46570 is an out-of-bounds read vulnerability in radare2 v.5.8.9 and earlier versions.
2
How does CVE-2023-46570 affect radare2?
CVE-2023-46570 affects radare2 versions up to and including v.5.8.9.
3
What is the severity of CVE-2023-46570?
CVE-2023-46570 has a severity rating of 9.8 (critical).
4
How can I mitigate the risk of CVE-2023-46570?
To mitigate the risk of CVE-2023-46570, update your radare2 installation to version 5.9.0 or later.
5
Where can I find more information about CVE-2023-46570?
You can find more information about CVE-2023-46570 in the following references: - [GitHub Issue](https://github.com/radareorg/radare2/issues/22333) - [Gist](https://gist.github.com/gandalf4a/d7fa58f1b3418ef08ad244acccc10ba6)