A vulnerability was found in Radare2 in versions prior to 5.6.2, 5.6.0, 5.5.4 and 5.5.2. Mapping a huge section filled with zeros of an ELF64 binary for MIPS architecture can lead to uncontrolled resource consumption and DoS.
The product performs an iteration or loop without sufficiently limiting the number of times that the loop is executed.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Radare2 | Radare | * | 5.5.0 (including) |
Radare2 | Ubuntu | bionic | * |
Radare2 | Ubuntu | lunar | * |
Radare2 | Ubuntu | mantic | * |
Radare2 | Ubuntu | trusty | * |
Radare2 | Ubuntu | xenial | * |