PT-2026-33515 · Radare2 · Radare2
Shota Zaizen
·
Published
2026-04-17
·
Updated
2026-04-20
·
CVE-2026-40527
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
radare2 versions prior to commit bc5a890
Description
An issue exists in the 'afsv/afsvj' command path where crafted ELF binaries can embed malicious r2 command sequences as DWARF
DW TAG formal parameter names. When the software analyzes a binary using the aaa command and subsequently runs afsvj, unsanitized parameter interpolation in the pfq command string allows for arbitrary shell command execution.Recommendations
Update to the version containing commit bc5a890.
Fix
OS Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Radare2