PT-2024-24181 · Rizin · Rizin

Imbillow

·

Published

2024-12-17

·

Updated

2025-07-03

·

CVE-2024-31668

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions rizin versions prior to 0.6.3
Description The issue is related to improper neutralization of special elements via the meta set function in librz/analysis/meta. This occurs due to the improper handling of special elements.
Recommendations For versions prior to 0.6.3, update to version 0.6.3 or later to resolve the issue. As a temporary workaround, consider disabling the meta set function in librz/analysis/meta until a patch is available.

Fix

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2024-31668

Affected Products

Rizin