MGASA-2024-0298 - Updated radare2 packages fix security vulnerability

Publication date: 13 Sep 2024
URL: https://advisories.mageia.org/MGASA-2024-0298.html
Type: security
Affected Mageia releases: 9
CVE: CVE-2023-47016

radare2  has an out-of-bounds read in r_bin_object_set_items in
libr/bin/bobj.c, causing a crash in r_read_le32 in libr/include/r_endian

References:
- https://bugs.mageia.org/show_bug.cgi?id=33534
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZIWVQC4JNA2JCJ7L3XNZBGYJ52KSQWKC/
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-47016

SRPMS:
- 9/core/radare2-5.8.8-1.2.mga9

Mageia 2024-0298: radare2 Security Advisory Updates

radare2 has an out-of-bounds read in r_bin_object_set_items in libr/bin/bobj.c, causing a crash in r_read_le32 in libr/include/r_endian References: - https://bugs.mageia.org/show...

Summary

radare2 has an out-of-bounds read in r_bin_object_set_items in libr/bin/bobj.c, causing a crash in r_read_le32 in libr/include/r_endian

References

- https://bugs.mageia.org/show_bug.cgi?id=33534

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZIWVQC4JNA2JCJ7L3XNZBGYJ52KSQWKC/

- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-47016

Resolution

MGASA-2024-0298 - Updated radare2 packages fix security vulnerability

SRPMS

- 9/core/radare2-5.8.8-1.2.mga9

Severity
Publication date: 13 Sep 2024
URL: https://advisories.mageia.org/MGASA-2024-0298.html
Type: security
CVE: CVE-2023-47016

Related News