PT-2022-11203 · Radare2+1 · Radare2+1

Octaviogallandan

+1

·

Published

2022-01-02

·

Updated

2024-04-19

·

CVE-2021-4021

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Radare2 versions prior to 5.6.2
Description A vulnerability was found in Radare2 where mapping a huge section filled with zeros of an ELF64 binary for MIPS architecture can lead to uncontrolled resource consumption and Denial of Service (DoS).
Recommendations For versions prior to 5.6.2, update to version 5.6.2 or later to resolve the issue. At the moment, there is no information about other mitigation measures for this vulnerability.

Exploit

Fix

DoS

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2022-1001
ALT-PU-2024-6421
ALT-PU-2024-6763
CVE-2021-4021
MGASA-2022-0440

Affected Products

Alt Linux
Radare2