The rreadle32() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted ELF file.
[
{
"signature_version": "v1",
"signature_type": "Line",
"id": "CVE-2018-11376-1236e4bf",
"digest": {
"line_hashes": [
"74147868421164778536266043603420534155",
"94012138497178765259711521921749933602",
"127318990783415709744242895765158527360",
"127253702788854721694552368469173099888"
],
"threshold": 0.9
},
"source": "https://github.com/radareorg/radare2/commit/1f37c04f2a762500222dda2459e6a04646feeedf",
"target": {
"file": "libr/core/cbin.c"
},
"deprecated": false
},
{
"signature_version": "v1",
"signature_type": "Function",
"id": "CVE-2018-11376-a48149a5",
"digest": {
"length": 3340.0,
"function_hash": "268876414047930744123853343933127487284"
},
"source": "https://github.com/radareorg/radare2/commit/1f37c04f2a762500222dda2459e6a04646feeedf",
"target": {
"file": "libr/core/cbin.c",
"function": "bin_entry"
},
"deprecated": false
},
{
"signature_version": "v1",
"signature_type": "Line",
"id": "CVE-2018-11376-bf0ed46e",
"digest": {
"line_hashes": [
"239465907582288234478493190199706323560",
"265047590234715799993876434927710511677",
"73638889202388708246382006019522487151",
"203492581216947726462311589824830531931",
"111223670578665787765158084771167683025",
"310554751992119742824921622046783105906",
"244373275692055250934245746795551528343",
"144292358253911142672534763828864318582"
],
"threshold": 0.9
},
"source": "https://github.com/radareorg/radare2/commit/1f37c04f2a762500222dda2459e6a04646feeedf",
"target": {
"file": "libr/bin/p/bin_elf.c"
},
"deprecated": false
},
{
"signature_version": "v1",
"signature_type": "Function",
"id": "CVE-2018-11376-d254ef0b",
"digest": {
"length": 1117.0,
"function_hash": "192691691577455363091545508820585713191"
},
"source": "https://github.com/radareorg/radare2/commit/1f37c04f2a762500222dda2459e6a04646feeedf",
"target": {
"file": "libr/bin/p/bin_elf.c",
"function": "process_constructors"
},
"deprecated": false
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-11376.json"