« Back to list

Unicorn-engine

Unicorn-engine Unicorn Engine: vulnerabilities and CVEs

Unicorn-engine Unicorn Engine has 7 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.

CVEs7
Last 12 months0
Critical0
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2022-29695High (7.5)1.1%—Jun 2, 2022
Unicorn Engine v2.0.0-rc7 contains memory leaks caused by an incomplete unicorn engine initialization.
CVE-2022-29694High (7.5)1.9%—Jun 2, 2022
Unicorn Engine v2.0.0-rc7 and below was discovered to contain a NULL pointer dereference via qemu_ram_free.
CVE-2022-29693High (7.5)1.2%—Jun 2, 2022
Unicorn Engine v2.0.0-rc7 and below was discovered to contain a memory leak via the function uc_close at /my/unicorn/uc.c.
CVE-2022-29692High (7.8)0.80%—Jun 2, 2022
Unicorn Engine v1.0.3 was discovered to contain a use-after-free vulnerability via the hook function.
CVE-2021-44078High (8.1)0.53%—Dec 26, 2021
An issue was discovered in split_region in uc.c in Unicorn Engine before 2.0.0-rc5. It allows local attackers to escape the sandbox. An attacker must first obtain the ability to execute crafted code in the target…
CVE-2021-36979Medium (5.5)0.88%—Jul 20, 2021
Unicorn Engine 1.0.2 has an out-of-bounds write in tb_flush_armeb (called from cpu_arm_exec_armeb and tcg_cpu_exec_armeb).
CVE-2020-36431Medium (5.5)0.27%—Jul 20, 2021
Unicorn Engine 1.0.2 has an out-of-bounds write in helper_wfe_arm.