Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-14745

In radare2 before 3.7.0, a command injection vulnerability exists in bin_symbols() in libr/core/cbin.c. By using a crafted executable file, it's possible to execute arbitrary shell commands with the permissions of the victim. This vulnerability is due to improper handling of symbol names embedded in executables.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.071
EPSS Ranking 91.0%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 6.8
References
Products affected by CVE-2019-14745
  • Radare » Radare2 » Version: 0.10.0
    cpe:2.3:a:radare:radare2:0.10.0
  • Radare » Radare2 » Version: 0.10.1
    cpe:2.3:a:radare:radare2:0.10.1
  • Radare » Radare2 » Version: 0.10.2
    cpe:2.3:a:radare:radare2:0.10.2
  • Radare » Radare2 » Version: 0.10.3
    cpe:2.3:a:radare:radare2:0.10.3
  • Radare » Radare2 » Version: 0.10.4
    cpe:2.3:a:radare:radare2:0.10.4
  • Radare » Radare2 » Version: 0.10.5
    cpe:2.3:a:radare:radare2:0.10.5
  • Radare » Radare2 » Version: 0.10.6
    cpe:2.3:a:radare:radare2:0.10.6
  • Radare » Radare2 » Version: 0.8.6
    cpe:2.3:a:radare:radare2:0.8.6
  • Radare » Radare2 » Version: 0.8.8
    cpe:2.3:a:radare:radare2:0.8.8
  • Radare » Radare2 » Version: 0.9
    cpe:2.3:a:radare:radare2:0.9
  • Radare » Radare2 » Version: 0.9.2
    cpe:2.3:a:radare:radare2:0.9.2
  • Radare » Radare2 » Version: 0.9.4
    cpe:2.3:a:radare:radare2:0.9.4
  • Radare » Radare2 » Version: 0.9.6
    cpe:2.3:a:radare:radare2:0.9.6
  • Radare » Radare2 » Version: 0.9.7
    cpe:2.3:a:radare:radare2:0.9.7
  • Radare » Radare2 » Version: 0.9.7.3-1
    cpe:2.3:a:radare:radare2:0.9.7.3-1
  • Radare » Radare2 » Version: 0.9.8
    cpe:2.3:a:radare:radare2:0.9.8
  • Radare » Radare2 » Version: 0.9.9
    cpe:2.3:a:radare:radare2:0.9.9
  • Radare » Radare2 » Version: 1.0
    cpe:2.3:a:radare:radare2:1.0
  • Radare » Radare2 » Version: 1.0.1
    cpe:2.3:a:radare:radare2:1.0.1
  • Radare » Radare2 » Version: 1.0.2
    cpe:2.3:a:radare:radare2:1.0.2
  • Radare » Radare2 » Version: 1.1.0
    cpe:2.3:a:radare:radare2:1.1.0
  • Radare » Radare2 » Version: 1.2.0
    cpe:2.3:a:radare:radare2:1.2.0
  • Radare » Radare2 » Version: 1.2.1
    cpe:2.3:a:radare:radare2:1.2.1
  • Radare » Radare2 » Version: 1.3.0
    cpe:2.3:a:radare:radare2:1.3.0
  • Radare » Radare2 » Version: 1.4.0
    cpe:2.3:a:radare:radare2:1.4.0
  • Radare » Radare2 » Version: 1.5.0
    cpe:2.3:a:radare:radare2:1.5.0
  • Radare » Radare2 » Version: 1.6.0
    cpe:2.3:a:radare:radare2:1.6.0
  • Radare » Radare2 » Version: 2.0.0
    cpe:2.3:a:radare:radare2:2.0.0
  • Radare » Radare2 » Version: 2.0.1
    cpe:2.3:a:radare:radare2:2.0.1
  • Radare » Radare2 » Version: 2.1.0
    cpe:2.3:a:radare:radare2:2.1.0
  • Radare » Radare2 » Version: 2.2.0
    cpe:2.3:a:radare:radare2:2.2.0
  • Radare » Radare2 » Version: 2.3.0
    cpe:2.3:a:radare:radare2:2.3.0
  • Radare » Radare2 » Version: 2.4.0
    cpe:2.3:a:radare:radare2:2.4.0
  • Radare » Radare2 » Version: 2.5.0
    cpe:2.3:a:radare:radare2:2.5.0
  • Radare » Radare2 » Version: 2.6.0
    cpe:2.3:a:radare:radare2:2.6.0
  • Radare » Radare2 » Version: 2.6.9
    cpe:2.3:a:radare:radare2:2.6.9
  • Radare » Radare2 » Version: 2.7.0
    cpe:2.3:a:radare:radare2:2.7.0
  • Radare » Radare2 » Version: 2.8.0
    cpe:2.3:a:radare:radare2:2.8.0
  • Radare » Radare2 » Version: 2.9.0
    cpe:2.3:a:radare:radare2:2.9.0
  • Radare » Radare2 » Version: 3.0.0
    cpe:2.3:a:radare:radare2:3.0.0
  • Radare » Radare2 » Version: 3.0.1
    cpe:2.3:a:radare:radare2:3.0.1
  • Radare » Radare2 » Version: 3.1.0
    cpe:2.3:a:radare:radare2:3.1.0
  • Radare » Radare2 » Version: 3.1.1
    cpe:2.3:a:radare:radare2:3.1.1
  • Radare » Radare2 » Version: 3.1.2
    cpe:2.3:a:radare:radare2:3.1.2
  • Radare » Radare2 » Version: 3.1.3
    cpe:2.3:a:radare:radare2:3.1.3
  • Radare » Radare2 » Version: 3.2.0
    cpe:2.3:a:radare:radare2:3.2.0
  • Radare » Radare2 » Version: 3.2.1
    cpe:2.3:a:radare:radare2:3.2.1
  • Radare » Radare2 » Version: 3.3.0
    cpe:2.3:a:radare:radare2:3.3.0
  • Radare » Radare2 » Version: 3.4.0
    cpe:2.3:a:radare:radare2:3.4.0
  • Radare » Radare2 » Version: 3.4.1
    cpe:2.3:a:radare:radare2:3.4.1
  • Radare » Radare2 » Version: 3.5.0
    cpe:2.3:a:radare:radare2:3.5.0
  • Radare » Radare2 » Version: 3.5.1
    cpe:2.3:a:radare:radare2:3.5.1
  • Fedoraproject » Fedora » Version: 29
    cpe:2.3:o:fedoraproject:fedora:29
  • Fedoraproject » Fedora » Version: 30
    cpe:2.3:o:fedoraproject:fedora:30
  • Fedoraproject » Fedora » Version: 31
    cpe:2.3:o:fedoraproject:fedora:31


Contact Us

Shodan ® - All rights reserved