OSV-2020-1386

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/radare2/OSV-2020-1386.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2020-1386
Published
2020-07-28T00:00:08.332887Z
Modified
2022-04-15T00:08:37.592330Z
Summary
Heap-buffer-overflow in parse_relocation_info
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=24400

Crash type: Heap-buffer-overflow READ 4
Crash state:
parse_relocation_info
get_relocs_64
relocs
References

Affected packages

OSS-Fuzz / radare2

Package

Name
radare2
Purl
pkg:generic/radare2

Affected ranges

Type
GIT
Repo
https://github.com/radare/radare2
Events

Affected versions

4.*

4.5.1

5.*

5.0.0
5.1.0
5.1.1
5.2.0
5.2.1
5.3.0
5.3.1
5.4.0
5.4.0-git
5.4.2
5.5.0
5.5.2
5.5.4
5.6.0
5.6.2
5.6.4
5.6.6

Other

continuous

release-5.*

release-5.0.0

Ecosystem specific

{
    "severity": "MEDIUM"
}