← Volver a CVEs
CVE-2025-1378
LOW3.3
Descripcion
A vulnerability, which was classified as problematic, was found in radare2 5.9.9 33286. Affected is an unknown function in the library /libr/main/rasm2.c of the component rasm2. The manipulation leads to memory corruption. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. Upgrading to version 6.0.0 is able to address this issue. The patch is identified as c6c772d2eab692ce7ada5a4227afd50c355ad545. It is recommended to upgrade the affected component.
Detalles CVE
Puntuacion CVSS v3.13.3
SeveridadLOW
Vector CVSSCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Vector de ataqueLOCAL
ComplejidadLOW
Privilegios requeridosLOW
Interaccion usuarioNONE
Publicado2/17/2025
Ultima modificacion6/23/2025
Fuentenvd
Avistamientos honeypot0
Productos afectados
radare:radare2
Debilidades (CWE)
CWE-119
Referencias
https://github.com/radareorg/radare2/issues/23953(cna@vuldb.com)
https://github.com/radareorg/radare2/milestone/86(cna@vuldb.com)
https://vuldb.com/?ctiid.295986(cna@vuldb.com)
https://vuldb.com/?id.295986(cna@vuldb.com)
https://vuldb.com/?submit.498499(cna@vuldb.com)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.