Description
The sdb_set_internal function in sdb.c in radare2 2.7.0 allows remote attackers to cause a denial of service (invalid read and application crash) via a crafted ELF file because of missing input validation in r_bin_dwarf_parse_comp_unit in libr/bin/dwarf.c.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-5946 | The sdb_set_internal function in sdb.c in radare2 2.7.0 allows remote attackers to cause a denial of service (invalid read and application crash) via a crafted ELF file because of missing input validation in r_bin_dwarf_parse_comp_unit in libr/bin/dwarf.c. |
References
History
Tue, 18 Mar 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:radare:radare2:*:*:*:*:*:*:*:* |
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T09:21:40.705Z
Reserved: 2018-07-12T00:00:00.000Z
Link: CVE-2018-14015
No data.
Status : Analyzed
Published: 2018-07-12T20:29:00.180
Modified: 2025-03-18T20:25:23.660
Link: CVE-2018-14015
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD