Skip to main content

Vendor/product archive

radare / radare2 CVEs

Beta · best-effort

170 CVEs tagged to radare / radare214 Critical, 65 High, 73 Medium, 18 Low, 0 Unrated.

CVE-2026-14789

Published Jul 6, 2026

A vulnerability was detected in radareorg radare2 up to 6.1.6. Affected by this issue is some unknown functionality of the file libr/bin/format/mdmp/mdmp.c of the component Memory…

CVSS 1.9 · Low
evidence mentions
7
Buzz score
27.3
Vendor/product tagsBeta · best-effort

CVE-2026-14788

Published Jul 6, 2026

A security vulnerability has been detected in radareorg radare2 up to 6.1.6. Affected by this vulnerability is the function r_core_bin_load of the file libr/core/cfile.c. Such man…

CVSS 1.9 · Low
evidence mentions
7
Buzz score
27.3
Vendor/product tagsBeta · best-effort

CVE-2026-14787

Published Jul 6, 2026

A weakness has been identified in radareorg radare2 up to 6.1.6. Affected is the function cmd_print in the library libr/core/cmd_print.inc of the component pb Print Command Handle…

CVSS 1.9 · Low
evidence mentions
7
Buzz score
27.3
Vendor/product tagsBeta · best-effort

CVE-2026-14786

Published Jul 6, 2026

A security flaw has been discovered in radareorg radare2 up to 6.1.6. This impacts the function r_str_word_get0set of the file libr/util/str.c. The manipulation results in integer…

CVSS 1.9 · Low
evidence mentions
7
Buzz score
27.3
Vendor/product tagsBeta · best-effort

CVE-2026-14761

Published Jul 5, 2026

A security vulnerability has been detected in radareorg radare2 up to 6.1.6. The affected element is the function r_str_ndup/r_str_append of the file libr/util/str.c. The manipula…

CVSS 1.9 · Low
evidence mentions
7
Buzz score
27.3
Vendor/product tagsBeta · best-effort

CVE-2026-14760

Published Jul 5, 2026

A weakness has been identified in radareorg radare2 up to 6.1.6. Impacted is the function r_core_seek_arch_bits of the file libr/core/disasm.c of the component regprofile Handler.…

CVSS 1.9 · Low
evidence mentions
7
Buzz score
27.3
Vendor/product tagsBeta · best-effort

CVE-2026-14759

Published Jul 5, 2026

A security flaw has been discovered in radareorg radare2 up to 6.1.6. This issue affects the function r_bin_java_inner_classes_attr_calc_size of the file shlr/java/class.c of the…

CVSS 1.9 · Low
evidence mentions
7
Buzz score
27.3
Vendor/product tagsBeta · best-effort

CVE-2026-14758

Published Jul 5, 2026

A vulnerability was identified in radareorg radare2 up to 6.1.6. This vulnerability affects the function cmd_anal_opcode of the file libr/core/cmd_anal.inc.c of the component hexp…

CVSS 1.9 · Low
evidence mentions
7
Buzz score
27.3
Vendor/product tagsBeta · best-effort

CVE-2026-14757

Published Jul 5, 2026

A vulnerability was determined in radareorg radare2 up to 6.1.6. This affects the function core_anal_bytes of the file libr/core/cmd_anal.inc. This manipulation causes integer ove…

CVSS 1.9 · Low
evidence mentions
6
Buzz score
26.0
Vendor/product tagsBeta · best-effort

CVE-2026-8696

Published May 15, 2026

radare2 6.1.5 contains a use-after-free vulnerability in the gdbr_pids_list() function within the GDB client core that allows remote attackers to cause a denial of service or pote…

CVSS 8.7 · High
evidence mentions
3
Buzz score
24.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-8695

Published May 15, 2026

radare2 6.1.5 contains a use-after-free vulnerability in the gdbr_threads_list() function that allows remote attackers to trigger memory corruption by sending a valid qfThreadInfo…

CVSS 8.7 · High
evidence mentions
4
Buzz score
27.1
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-6941

Published Apr 23, 2026

radare2 prior to 6.1.4 contains a path traversal vulnerability in its project notes handling that allows attackers to read or write files outside the configured project directory…

CVSS 6.9 · Medium
evidence mentions
3
Buzz score
24.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-6940

Published Apr 23, 2026

radare2 prior to 6.1.4 contains a path traversal vulnerability in project deletion that allows local attackers to recursively delete arbitrary directories by supplying absolute pa…

CVSS 6.9 · Medium
evidence mentions
3
Buzz score
24.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-40517

Published Apr 22, 2026

radare2 prior to 6.1.4 contains a command injection vulnerability in the PDB parser's print_gvars() function that allows attackers to execute arbitrary commands by crafting a mali…

CVSS 8.4 · High
evidence mentions
4
Buzz score
28.6
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-40527

Published Apr 17, 2026

radare2 prior to commit bc5a890 contains a command injection vulnerability in the afsv/afsvj command path where crafted ELF binaries can embed malicious r2 command sequences as DW…

CVSS 8.5 · High
evidence mentions
3
Buzz score
24.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2026-40499

Published Apr 15, 2026

radare2 prior to version 6.1.4 contains a command injection vulnerability in the PDB parser's print_gvars() function that allows attackers to execute arbitrary commands by embeddi…

CVSS 8.4 · High
evidence mentions
4
Buzz score
27.1
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2025-63745

Published Nov 14, 2025

A NULL pointer dereference vulnerability was discovered in radare2 6.0.5 and earlier within the info() function of bin_ne.c. A crafted binary input can trigger a segmentation faul…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-63744

Published Nov 14, 2025

A NULL pointer dereference vulnerability was discovered in radare2 6.0.5 and earlier within the load() function of bin_dyldcache.c. Processing a crafted file can cause a segmentat…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-60361

Published Oct 17, 2025

radare2 v5.9.8 and before contains a memory leak in the function bochs_open.

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-60360

Published Oct 17, 2025

radare2 v5.9.8 and before contains a memory leak in the function r2r_subprocess_init.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-60359

Published Oct 17, 2025

radare2 v5.9.8 and before contains a memory leak in the function r_bin_object_new.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-60358

Published Oct 16, 2025

radare2 v.5.9.8 and before contains a memory leak in the function _load_relocations.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-5648

Published Jun 5, 2025

A vulnerability was found in Radare2 5.9.9. It has been classified as problematic. Affected is the function r_cons_pal_init in the library /libr/cons/pal.c of the component radiff…

CVSS 2.0 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-5647

Published Jun 5, 2025

A vulnerability was found in Radare2 5.9.9 and classified as problematic. This issue affects the function r_cons_context_break_pop in the library /libr/cons/cons.c of the componen…

CVSS 2.0 · Low
Vendor/product tagsBeta · best-effort

CVE-2025-5646

Published Jun 5, 2025

A vulnerability has been found in Radare2 5.9.9 and classified as problematic. This vulnerability affects the function r_cons_rainbow_free in the library /libr/cons/pal.c of the c…

CVSS 2.0 · Low
Vendor/product tagsBeta · best-effort
Showing 1-25 of 170 CVEsPage 1 of 7