CVE-2023-5686

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Oct 20, 2023
Updated: Jan 21, 2024
CWE ID 122
CWE ID 787

Summary

CVE-2023-5686 is a heap-based buffer overflow vulnerability affecting the radare2 GitHub repository before version 5.9.0. An attacker could exploit this issue by sending crafted input to a vulnerable function, resulting in memory corruption and potential code execution. This could lead to unauthorized access or system takeover if the vulnerable system is used to analyze or process untrusted data. Radare2 users are advised to update to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Radare2
  • Fedora Operating System

Affected Vendors

  • Radare
  • Fedora Project