Package: radare2
Severity: important
Tags: security

Hi,

the following vulnerability was published for radare2.

CVE-2017-6197[0]:
| The r_read_* functions in libr/include/r_endian.h in radare2 1.2.1
| allow remote attackers to cause a denial of service (NULL pointer
| dereference and application crash) via a crafted binary file, as
| demonstrated by the r_read_le32 function.

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2017-6197
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-6197
Please adjust the affected versions in the BTS as needed.

Reply via email to