CVE-2023-46570

Name
CVE-2023-46570
Description
An out-of-bounds read in radare2 v.5.8.9 and before exists in the print_insn32 function of libr/arch/p/nds32/nds32-dis.h.
NVD Severity
high
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
MISC https://gist.github.com/gandalf4a/d7fa58f1b3418ef08ad244acccc10ba6
MISC https://github.com/radareorg/radare2/issues/22333

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:radare:radare2:*:*:*:*:*:*:*:* radare2 >= None < 5.9.0

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
radare2 3.18-community 5.8.6-r0 Valery Kartel <valery.kartel@gmail.com> possibly vulnerable
radare2 3.19-community 5.8.8-r1 Valery Kartel <valery.kartel@gmail.com> possibly vulnerable