CVE-2025-60358: Medium severity Radare2 Radare2 vulnerability
Published Oct 16, 2025
·Updated
radare2 v.5.9.8 and before contains a memory leak in the function loadrelocations.
Affected Software
2 affected components
Radare2 Radare2<=5.9.8
Radare Radare2<=5.9.8
Event History
Oct 16, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-60358?
CVE-2025-60358 has been classified as a medium severity vulnerability due to the potential for resource exhaustion.
2
How do I fix CVE-2025-60358?
To fix CVE-2025-60358, upgrade radare2 to version 5.9.9 or later.
3
What is the nature of the vulnerability in CVE-2025-60358?
CVE-2025-60358 is a memory leak vulnerability that occurs in the function _load_relocations of radare2.
4
Which versions of radare2 are affected by CVE-2025-60358?
CVE-2025-60358 affects radare2 versions up to and including 5.9.8.
5
Is there a workaround for CVE-2025-60358?
There is no specific workaround for CVE-2025-60358 other than upgrading to a patched version.