Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-16357

In radare 2.0.1, a memory corruption vulnerability exists in store_versioninfo_gnu_verdef() and store_versioninfo_gnu_verneed() in libr/bin/format/elf/elf.c, as demonstrated by an invalid free. This error is due to improper sh_size validation when allocating memory.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 44.2%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 6.8
Products affected by CVE-2017-16357
  • Radare » Radare2 » Version: 2.0.1
    cpe:2.3:a:radare:radare2:2.0.1


Contact Us

Shodan ® - All rights reserved