Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2019-14745
Description:In radare2 before 3.7.0, a command injection vulnerability exists in bin_symbols() in libr/core/cbin.c. By using a crafted executable file, it's possible to execute arbitrary shell commands with the permissions of the victim. This vulnerability is due to improper handling of symbol names embedded in executables.
Test IDs: 1.3.6.1.4.1.25623.1.0.876905   1.3.6.1.4.1.25623.1.0.877210   1.3.6.1.4.1.25623.1.0.876928   1.3.6.1.4.1.25623.1.0.877321   1.3.6.1.4.1.25623.1.0.876897  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2019-14745
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ETWG4VKHWL5F74L3QBBKSCOXHSRNSRRT/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MGA2PVBFA6VPWWLMBGWVBESHAJBQ7OXJ/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RQO7V37RGQEKZDLY2JYKDZTLNN2YUBC5/
https://bananamafia.dev/post/r2-pwndebian/
https://github.com/radare/radare2/pull/14690
https://github.com/radare/radare2/releases/tag/3.7.0




© 1998-2025 E-Soft Inc. All rights reserved.