OSV-2023-96

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/radare2/OSV-2023-96.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2023-96
Published
2023-02-23T13:00:28.515290Z
Modified
2024-11-19T14:16:58.524766Z
Summary
Heap-buffer-overflow in load_buffer
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=56208

Crash type: Heap-buffer-overflow READ 8
Crash state:
load_buffer
r_bin_object_new
r_bin_file_new_from_buffer
References

Affected packages

OSS-Fuzz / radare2

Package

Name
radare2
Purl
pkg:generic/radare2

Affected ranges

Type
GIT
Repo
https://github.com/radareorg/radare2
Events

Affected versions

5.*

5.6.8
5.7.0
5.7.2
5.7.4
5.7.6
5.7.8
5.8.0
5.8.2
5.8.4
5.8.6
5.8.8
5.9.0
5.9.2
5.9.4
5.9.6
5.9.8

Other

wip

Ecosystem specific

{
    "severity": "MEDIUM"
}