PT-2026-33515 · Radare2 · Radare2

Shota Zaizen

·

Published

2026-04-17

·

Updated

2026-04-20

·

CVE-2026-40527

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions radare2 versions prior to commit bc5a890
Description An issue exists in the 'afsv/afsvj' command path where crafted ELF binaries can embed malicious r2 command sequences as DWARF DW TAG formal parameter names. When the software analyzes a binary using the aaa command and subsequently runs afsvj, unsanitized parameter interpolation in the pfq command string allows for arbitrary shell command execution.
Recommendations Update to the version containing commit bc5a890.

Fix

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2026-40527

Affected Products

Radare2