Lucene search

K
cvelist@huntrdevCVELIST:CVE-2022-1207
HistoryApr 01, 2022 - 7:10 p.m.

CVE-2022-1207 Out-of-bounds read in radareorg/radare2

2022-04-0119:10:10
CWE-125
@huntrdev
www.cve.org
7
cve-2022-1207
radareorg/radare2
out-of-bounds read
github repository
vulnerability
sensitive information

CVSS3

6.6

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:L

EPSS

0.001

Percentile

31.5%

Out-of-bounds read in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability allows attackers to read sensitive information from outside the allocated buffer boundary.

CNA Affected

[
  {
    "product": "radareorg/radare2",
    "vendor": "radareorg",
    "versions": [
      {
        "lessThan": "5.6.8",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

6.6

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:L

EPSS

0.001

Percentile

31.5%