Radare2 v5.7.2 was discovered to contain a NULL pointer dereference via the function r_bin_file_xtr_load_buffer at bin/bfile.c. This vulnerability allows attackers to cause a Denial of Service (DOS) via a crafted binary file. https://github.com/radareorg/radare2/issues/20354
Created radare2 tracking bugs for this issue: Affects: epel-7 [bug 2113987] Affects: epel-8 [bug 2113988] Affects: fedora-35 [bug 2113989] Affects: fedora-36 [bug 2113990]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.