ZeroHour

CVE-2018-20460

PoC
CVSS 3.0
5.5 medium
EPSS
1%p62
Published
()
Modified
Description

In radare2 prior to 3.1.2, the parseOperands function in libr/asm/arch/arm/armass64.c allows attackers to cause a denial-of-service (application crash caused by stack-based buffer overflow) by crafting an input file.

Vendors
radare
Products
radare2
Weakness
CWE-787
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.