PT-2021-7744 · Radare2+1 · Radare2+1

Cen Zhang

·

Published

2021-12-30

·

Updated

2024-06-15

·

CVE-2022-0139

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions radare2 versions prior to 5.6.0
Description The issue is related to a Use After Free condition in the Radare2 reverse engineering framework, which involves the use of memory after it has been freed. This can potentially allow a remote attacker to execute arbitrary code or cause a denial of service.
Recommendations For versions prior to 5.6.0, update to version 5.6.0 or later to resolve the issue.

Exploit

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2023-8220
ALT-PU-2024-6421
ALT-PU-2024-6763
BDU:2023-02359
CVE-2022-0139
OPENSUSE-SU-2024:12173-1

Affected Products

Alt Linux
Radare2