radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Apple Preferred Executable Format loader was vulnerable because the PEF loader accepted relocSecCount values that were not bounded by the number of section
Shenlong is analyzing...
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-81885 | 5.5 MEDIUM | radare2: Infinite relocation-chain loop causes denial of service in radare2 NE parser |
| CVE-2026-81879 | 5.5 MEDIUM | radare2: Heap out-of-bounds read in radare2 ELF PN_XNUM handling |
| CVE-2026-81878 | 5.5 MEDIUM | radare2: Integer overflow causes heap out-of-bounds write in radare2 PYC parser |
| CVE-2026-81886 | 5.5 MEDIUM | radare2: Uncontrolled memory allocation in radare2 dmp64 parser |
| CVE-2026-81882 | 3.3 LOW | radare2: Missing string termination causes heap out-of-bounds read in radare2 bplist parse |
| CVE-2026-81881 | 3.3 LOW | radare2: Heap out-of-bounds read in radare2 Mach-O Swift metadata parser |
| CVE-2026-81883 | 3.3 LOW | radare2: Out-of-bounds Read at the end of string in the LUA 5.3 bytecode |
| CVE-2026-81884 | 2.5 LOW | radare2: Heap out-of-bounds read in radare2 Mach-O LC_DATA_IN_CODE parser |
No comments yet