CyberRota Analysis
AI-GeneratedA security vulnerability in radareorg radare2 versions up to 6.1.6 allows for an integer overflow in the r_str_word_get0set function, which can be exploited locally. Although the severity is rated low, the public release of the exploit means that users should prioritize applying the patch identified as 11ac224c0eb8d57830fccc99e1c1cd8e5d958813 to mitigate potential risks. Organizations using affected versions should address this issue promptly to maintain system integrity.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A security flaw has been discovered in radareorg radare2 up to 6.1.6. This impacts the function r_str_word_get0set of the file libr/util/str.c. The manipulation results in integer overflow. The attack must be initiated from a local position. The exploit has been released to the public and may be used for attacks. The patch is identified as 11ac224c0eb8d57830fccc99e1c1cd8e5d958813. It is best practice to apply a patch to resolve this issue.
Related CVEs
Other vulnerabilities affecting the same vendor(s)