CVE-2024-29645

HIGH

radarorg radare2 <5.8.8 - RCE

Title source: llm

Description

Buffer Overflow vulnerability in radarorg radare2 v.5.8.8 allows an attacker to execute arbitrary code via the parse_die function.

Scores

CVSS v3 7.8
EPSS 0.0006
EPSS Percentile 17.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-120
Status published

Affected Products (1)

radare/radare2

Timeline

Published Dec 02, 2024
Tracked Since Feb 18, 2026