Improper Validation of Array Index in GitHub repository radareorg/radare2 prior to 5.6.8. This vulnerability is heap overflow and may be exploitable. For more general description of heap buffer overflow, see CWE.
[
{
"signature_type": "Function",
"digest": {
"function_hash": "212461743017968634586153363735706410678",
"length": 1124.0
},
"target": {
"file": "libr/bin/format/ne/ne.c",
"function": "__init"
},
"source": "https://github.com/radareorg/radare2/commit/2d782cdaa2112c10b8dd5e7a93c134b2ada9c1a6",
"id": "CVE-2022-1237-14bf07fc",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "312590666163101270630893086992354657332",
"length": 769.0
},
"target": {
"file": "libr/bin/format/ne/ne.c",
"function": "r_bin_ne_get_segments"
},
"source": "https://github.com/radareorg/radare2/commit/2d782cdaa2112c10b8dd5e7a93c134b2ada9c1a6",
"id": "CVE-2022-1237-19f7e430",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "279445059409267410296919349845188405100",
"length": 3130.0
},
"target": {
"file": "libr/bin/format/ne/ne.c",
"function": "r_bin_ne_get_relocs"
},
"source": "https://github.com/radareorg/radare2/commit/2d782cdaa2112c10b8dd5e7a93c134b2ada9c1a6",
"id": "CVE-2022-1237-650a977d",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"313238745765593098916398371711611719026",
"285354608813098916154529260069139576893",
"286958963303345002870424340772319616611",
"278245041796832390187987854379937729314",
"44161756031751915505094976915419864255",
"160931447799544738429521903482229937318",
"33311708342681056721883058213194771639",
"290896371034250184478816289964205222301",
"90995906634641978680220865597770704329",
"328021507538455273316348755976480422136",
"51085329808628515573223678349538124018",
"103897563537280529804890557582727421491",
"203343622144456296839341978936902773643",
"132728641441435235404390189462423297449",
"220367250189815707842624022974412684568",
"272843135878373644043154333433921004047",
"257672823049057738669414196286800807046",
"43131456641423669542650334085100755353",
"311389901187714830431726187042502027463",
"14627559400167382318230096722818527534",
"158952365053033429299240922740344980766",
"77798025342715016000801823701862325383",
"292770341592697073024709075594571309837",
"152527434330706178348542513598339955706",
"336268092676388192736019445597462727161",
"80857286874131624592486978757623621591",
"11929221718300295321011889736232398917",
"244586696951920592024541961027622380500",
"114948595547177084329858880478192439140",
"204973326996423658686719912152733999265",
"65360407696006289699126105974037334708",
"307505140124437535344375183026984433856",
"15315913750371117039471350980938507391"
]
},
"target": {
"file": "libr/bin/format/ne/ne.c"
},
"source": "https://github.com/radareorg/radare2/commit/2d782cdaa2112c10b8dd5e7a93c134b2ada9c1a6",
"id": "CVE-2022-1237-8844f929",
"deprecated": false,
"signature_version": "v1"
}
]