Lucene search

K
mageiaGentoo FoundationMGASA-2024-0298
HistorySep 13, 2024 - 8:15 p.m.

Updated radare2 packages fix security vulnerability

2024-09-1320:15:41
Gentoo Foundation
advisories.mageia.org
2
radare2
security
vulnerability
out-of-bounds read

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

6.8

Confidence

Low

radare2 has an out-of-bounds read in r_bin_object_set_items in libr/bin/bobj.c, causing a crash in r_read_le32 in libr/include/r_endian

OSVersionArchitecturePackageVersionFilename
Mageia9noarchradare2< 5.8.8-1.2radare2-5.8.8-1.2.mga9

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

6.8

Confidence

Low