Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2026-40499

4 месяца назад

radare2 prior to version 6.1.4 contains a command injection vulnerability in the PDB parser's print_gvars() function that allows attackers to execute arbitrary commands by embedding a newline byte in the PE section header name field. Attackers can craft a malicious PDB file with specially crafted section names to inject r2 commands that are executed when the idp command processes the file.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2026-40499

4 месяца назад

radare2 prior to version 6.1.4 contains a command injection vulnerability in the PDB parser's print_gvars() function that allows attackers to execute arbitrary commands by embedding a newline byte in the PE section header name field. Attackers can craft a malicious PDB file with specially crafted section names to inject r2 commands that are executed when the idp command processes the file.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2026-40499

4 месяца назад

radare2 prior to version 6.1.4 contains a command injection vulnerabil ...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-7rhq-9q45-5gm4

4 месяца назад

radare2 prior to version 6.1.4 contains a command injection vulnerability in the PDB parser's print_gvars() function that allows attackers to execute arbitrary commands by embedding a newline byte in the PE section header name field. Attackers can craft a malicious PDB file with specially crafted section names to inject r2 commands that are executed when the idp command processes the file.

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20653-1

4 месяца назад

Security update for radare2

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-40499

radare2 prior to version 6.1.4 contains a command injection vulnerability in the PDB parser's print_gvars() function that allows attackers to execute arbitrary commands by embedding a newline byte in the PE section header name field. Attackers can craft a malicious PDB file with specially crafted section names to inject r2 commands that are executed when the idp command processes the file.

CVSS3: 7.8
1%
Низкий
4 месяца назад
nvd логотип
CVE-2026-40499

radare2 prior to version 6.1.4 contains a command injection vulnerability in the PDB parser's print_gvars() function that allows attackers to execute arbitrary commands by embedding a newline byte in the PE section header name field. Attackers can craft a malicious PDB file with specially crafted section names to inject r2 commands that are executed when the idp command processes the file.

CVSS3: 7.8
1%
Низкий
4 месяца назад
debian логотип
CVE-2026-40499

radare2 prior to version 6.1.4 contains a command injection vulnerabil ...

CVSS3: 7.8
1%
Низкий
4 месяца назад
github логотип
GHSA-7rhq-9q45-5gm4

radare2 prior to version 6.1.4 contains a command injection vulnerability in the PDB parser's print_gvars() function that allows attackers to execute arbitrary commands by embedding a newline byte in the PE section header name field. Attackers can craft a malicious PDB file with specially crafted section names to inject r2 commands that are executed when the idp command processes the file.

CVSS3: 7.8
1%
Низкий
4 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20653-1

Security update for radare2

4 месяца назад

Уязвимостей на страницу