Rizin Versions 0.4.0 and prior are vulnerable to an out-of-bounds write when getting data from PYC(python) files. A user opening a malicious PYC file could be affected by this vulnerability, allowing an attacker to execute code on the user's machine. https://github.com/rizinorg/rizin/security/advisories/GHSA-h897-rhm9-rpmw https://github.com/rizinorg/rizin/issues/2963 https://github.com/rizinorg/rizin/commit/38d8006cd609ac75de82b705891d3508d2c218d5
Created rizin tracking bugs for this issue: Affects: epel-all [bug 2126124] Affects: fedora-all [bug 2126126]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.