Radare
Radare2: vulnerabilidades y CVE
Radare2 tiene 181 vulnerabilidades publicadas, 33 de ellas en los últimos 12 meses. 14 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE181
Últimos 12 meses33
Críticas14
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-81886 | Media (5.5) | 0.13% | — | 22 sept 2026 | radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Windows 64-bit crash-dump dmp64 parser was vulnerable because the Windows dmp64 parser used an input-controlled… |
| CVE-2026-81885 | Media (5.5) | 0.13% | — | 22 sept 2026 | radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's NE relocation fixup-chain parser was vulnerable because the NE relocation parser followed fixup chains without an… |
| CVE-2026-81884 | Baja (3.3) | 0.15% | — | 22 sept 2026 | radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Mach-O LC_DATA_IN_CODE parser was vulnerable because the Mach-O LC_DATA_IN_CODE parser trusted dataoff and… |
| CVE-2026-81883 | Baja (3.3) | 0.16% | — | 22 sept 2026 | radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Lua 5.3 bytecode function parser was vulnerable because the Lua 5.3 bytecode function parser read fixed… |
| CVE-2026-81882 | Media (6.1) | 0.13% | — | 22 sept 2026 | radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's binary property-list Unicode parser was vulnerable because the binary-property-list Unicode parser underallocated… |
| CVE-2026-81881 | Media (4.4) | 0.13% | — | 22 sept 2026 | radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Mach-O Swift field-metadata parser was vulnerable because a relative Swift field pointer could be lower than the… |
| CVE-2026-81880 | Media (5.5) | 0.14% | — | 22 sept 2026 | radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Apple Preferred Executable Format loader was vulnerable because the PEF loader accepted relocSecCount values that… |
| CVE-2026-81879 | Media (6.1) | 0.18% | — | 22 sept 2026 | radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's ELF PN_XNUM handling was vulnerable because the ELF parser allocated the program-header array using the resolved… |
| CVE-2026-81878 | Media (5.5) | 0.20% | — | 22 sept 2026 | radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's CPython bytecode .pyc marshal parser was vulnerable because the CPython marshal readers accepted a 32-bit string… |
| CVE-2026-14789 | Baja (1.9) | 0.22% | — | 6 jul 2026 | A vulnerability was detected in radareorg radare2 up to 6.1.6. Affected by this issue is some unknown functionality of the file libr/bin/format/mdmp/mdmp.c of the component Memory64ListStream Parser. Performing a… |
| CVE-2026-14788 | Baja (1.9) | 0.20% | — | 6 jul 2026 | A security vulnerability has been detected in radareorg radare2 up to 6.1.6. Affected by this vulnerability is the function r_core_bin_load of the file libr/core/cfile.c. Such manipulation leads to use after free. The… |
| CVE-2026-14787 | Baja (1.9) | 0.21% | — | 6 jul 2026 | A weakness has been identified in radareorg radare2 up to 6.1.6. Affected is the function cmd_print in the library libr/core/cmd_print.inc of the component pb Print Command Handler. This manipulation causes integer… |
| CVE-2026-14786 | Baja (1.9) | 0.19% | — | 6 jul 2026 | A security flaw has been discovered in radareorg radare2 up to 6.1.6. This impacts the function r_str_word_get0set of the file libr/util/str.c. The manipulation results in integer overflow. The attack must be initiated… |
| CVE-2026-14761 | Baja (1.9) | 0.19% | — | 5 jul 2026 | A security vulnerability has been detected in radareorg radare2 up to 6.1.6. The affected element is the function r_str_ndup/r_str_append of the file libr/util/str.c. The manipulation leads to integer overflow. An… |
| CVE-2026-14760 | Baja (1.9) | 0.20% | — | 5 jul 2026 | A weakness has been identified in radareorg radare2 up to 6.1.6. Impacted is the function r_core_seek_arch_bits of the file libr/core/disasm.c of the component regprofile Handler. Executing a manipulation can lead to… |
| CVE-2026-14759 | Baja (1.9) | 0.22% | — | 5 jul 2026 | A security flaw has been discovered in radareorg radare2 up to 6.1.6. This issue affects the function r_bin_java_inner_classes_attr_calc_size of the file shlr/java/class.c of the component RBinJava Line Number Table… |
| CVE-2026-14758 | Baja (1.9) | 0.19% | — | 5 jul 2026 | A vulnerability was identified in radareorg radare2 up to 6.1.6. This vulnerability affects the function cmd_anal_opcode of the file libr/core/cmd_anal.inc.c of the component hexpairs Parser. Such manipulation leads to… |
| CVE-2026-14757 | Baja (1.9) | 0.21% | — | 5 jul 2026 | A vulnerability was determined in radareorg radare2 up to 6.1.6. This affects the function core_anal_bytes of the file libr/core/cmd_anal.inc. This manipulation causes integer overflow. The attack needs to be launched… |
| CVE-2026-8696 | Alta (8.7) | 1.0% | — | 15 may 2026 | radare2 6.1.5 contains a use-after-free vulnerability in the gdbr_pids_list() function within the GDB client core that allows remote attackers to cause a denial of service or potentially execute arbitrary code by… |
| CVE-2026-8695 | Alta (8.7) | 1.1% | — | 15 may 2026 | radare2 6.1.5 contains a use-after-free vulnerability in the gdbr_threads_list() function that allows remote attackers to trigger memory corruption by sending a valid qfThreadInfo response followed by a malformed… |
| CVE-2026-6941 | Media (6.9) | 0.21% | — | 23 abr 2026 | radare2 prior to 6.1.4 contains a path traversal vulnerability in its project notes handling that allows attackers to read or write files outside the configured project directory by importing a malicious .zrp archive… |
| CVE-2026-6940 | Media (6.9) | 0.19% | — | 23 abr 2026 | radare2 prior to 6.1.4 contains a path traversal vulnerability in project deletion that allows local attackers to recursively delete arbitrary directories by supplying absolute paths that escape the configured… |
| CVE-2026-40517 | Alta (8.4) | 1.7% | — | 22 abr 2026 | radare2 prior to 6.1.4 contains a command injection vulnerability in the PDB parser's print_gvars() function that allows attackers to execute arbitrary commands by crafting a malicious PDB file with newline characters… |
| CVE-2026-40527 | Alta (8.5) | 1.5% | — | 17 abr 2026 | radare2 prior to commit bc5a890 contains a command injection vulnerability in the afsv/afsvj command path where crafted ELF binaries can embed malicious r2 command sequences as DWARF DW_TAG_formal_parameter names.… |
| CVE-2026-41015 | Alta (7.4) | 1.0% | — | 16 abr 2026 | radare2 before 9236f44, when configured on UNIX without SSL, allows command injection via a PDB name to rabin2 -PP. NOTE: although users are supposed to use the latest version from git (not a release), the date range… |
| CVE-2026-40499 | Alta (8.4) | 1.7% | — | 15 abr 2026 | radare2 prior to version 6.1.4 contains a command injection vulnerability in the PDB parser's print_gvars() function that allows attackers to execute arbitrary commands by embedding a newline byte in the PE section… |
| CVE-2026-4174 | Baja (1.9) | 0.16% | — | 16 mar 2026 | A vulnerability has been found in Radare2 5.9.9. This issue affects the function walk_exports_trie of the file libr/bin/format/mach0/mach0.c of the component Mach-O File Parser. Such manipulation leads to resource… |
| CVE-2025-63745 | Media (5.5) | 0.15% | — | 14 nov 2025 | A NULL pointer dereference vulnerability was discovered in radare2 6.0.5 and earlier within the info() function of bin_ne.c. A crafted binary input can trigger a segmentation fault, leading to a denial of service when… |
| CVE-2025-63744 | Media (4.3) | 0.29% | — | 14 nov 2025 | A NULL pointer dereference vulnerability was discovered in radare2 6.0.5 and earlier within the load() function of bin_dyldcache.c. Processing a crafted file can cause a segmentation fault and crash the program. |
| CVE-2025-60361 | Baja (3.3) | 0.16% | — | 17 oct 2025 | radare2 v5.9.8 and before contains a memory leak in the function bochs_open. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.