radare2 is a UNIX-like reverse engineering framework and command-line toolset. Prior to 6.2.0, radare2's NE relocation fixup-chain parser was vulnerable because the NE relocation parser followed fixup chains without an active iteration limit or cycle detection
Shenlong is analyzing...
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-81879 | 5.5 MEDIUM | radare2: Heap out-of-bounds read in radare2 ELF PN_XNUM handling |
| CVE-2026-81880 | 5.5 MEDIUM | radare2: Uncontrolled resource consumption in radare2 PEF loader |
| CVE-2026-81878 | 5.5 MEDIUM | radare2: Integer overflow causes heap out-of-bounds write in radare2 PYC parser |
| CVE-2026-81886 | 5.5 MEDIUM | radare2: Uncontrolled memory allocation in radare2 dmp64 parser |
| CVE-2026-81882 | 3.3 LOW | radare2: Missing string termination causes heap out-of-bounds read in radare2 bplist parse |
| CVE-2026-81881 | 3.3 LOW | radare2: Heap out-of-bounds read in radare2 Mach-O Swift metadata parser |
| CVE-2026-81883 | 3.3 LOW | radare2: Out-of-bounds Read at the end of string in the LUA 5.3 bytecode |
| CVE-2026-81884 | 2.5 LOW | radare2: Heap out-of-bounds read in radare2 Mach-O LC_DATA_IN_CODE parser |
No comments yet