CVE-2025-1744: Out-of-bounds Write in radare2
Out-of-bounds Write in radare2
Other sources
Out-of-bounds Write vulnerability in radareorg radare2 allows
heap-based buffer over-read or buffer overflow.This issue affects radare2: before <5.9.9.
— MITRE
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 2.41-5 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 18.2.2-6 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 32.0-5 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 2.37-14 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.2.10-7
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1744?
CVE-2025-1744 is classified as a high severity vulnerability due to its potential to cause heap-based buffer over-read or buffer overflow.
How do I fix CVE-2025-1744?
To mitigate CVE-2025-1744, you should upgrade to radare2 version 5.9.9 or later.
What versions of radare2 are affected by CVE-2025-1744?
CVE-2025-1744 affects radare2 versions prior to 5.9.9.
What kind of vulnerability is CVE-2025-1744?
CVE-2025-1744 is an out-of-bounds write vulnerability that allows for heap-based buffer over-read or buffer overflow.
Where can I find more details about CVE-2025-1744?
More technical details and discussions about CVE-2025-1744 can be found in its associated GitHub pull request.