PT-2022-11203 · Radare2+1 · Radare2+1
Octaviogallandan
+1
·
Published
2022-01-02
·
Updated
2024-04-19
·
CVE-2021-4021
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Radare2 versions prior to 5.6.2
Description
A vulnerability was found in Radare2 where mapping a huge section filled with zeros of an ELF64 binary for MIPS architecture can lead to uncontrolled resource consumption and Denial of Service (DoS).
Recommendations
For versions prior to 5.6.2, update to version 5.6.2 or later to resolve the issue.
At the moment, there is no information about other mitigation measures for this vulnerability.
Exploit
Fix
DoS
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Radare2