radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's Mach-O LC_DATA_IN_CODE parser was vulnerable because the Mach-O LC_DATA_IN_CODE parser trusted dataoff and datasize and allowed a final partial record to b
Shenlong is analyzing...
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-81885 | 5.5 MEDIUM | radare2: Infinite relocation-chain loop causes denial of service in radare2 NE parser |
| CVE-2026-81879 | 5.5 MEDIUM | radare2: Heap out-of-bounds read in radare2 ELF PN_XNUM handling |
| CVE-2026-81880 | 5.5 MEDIUM | radare2: Uncontrolled resource consumption in radare2 PEF loader |
| CVE-2026-81878 | 5.5 MEDIUM | radare2: Integer overflow causes heap out-of-bounds write in radare2 PYC parser |
| CVE-2026-81886 | 5.5 MEDIUM | radare2: Uncontrolled memory allocation in radare2 dmp64 parser |
| CVE-2026-81882 | 3.3 LOW | radare2: Missing string termination causes heap out-of-bounds read in radare2 bplist parse |
| CVE-2026-81881 | 3.3 LOW | radare2: Heap out-of-bounds read in radare2 Mach-O Swift metadata parser |
| CVE-2026-81883 | 3.3 LOW | radare2: Out-of-bounds Read at the end of string in the LUA 5.3 bytecode |
No comments yet