漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
radareorg radare2 cfile.c r_core_bin_load use after free
Vulnerability Description
A security vulnerability has been detected in radareorg radare2 up to 6.1.6. Affected by this vulnerability is the function r_core_bin_load of the file libr/core/cfile.c. Such manipulation leads to use after free. The attack needs to be performed locally. The exploit has been disclosed publicly and may be used. The name of the patch is 635ab1eeb30340c26076722a90cb91fb2272130b. Applying a patch is advised to resolve this issue.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Vulnerability Type
释放后使用
Vulnerability Title
Radare2 缓冲区错误漏洞
Vulnerability Description
Radare Radare2是Radare团队开源的一个面向 Unix 极客的 Libre 反向框架。 Radare2 6.1.6及之前版本存在安全漏洞,该漏洞源于文件libr/core/cfile.c中函数r_core_bin_load的操作可能导致释放后重用。
CVSS Information
N/A
Vulnerability Type
N/A