Arbitrary Write Vulnerability in radare2 Affected by Remote Attacks
CVE-2019-19647
7.8HIGH
What is CVE-2019-19647?
The radare2 software prior to version 4.0.0 contains a vulnerability that fails to properly validate the content variable in the function r_asm_pseudo_incbin within libr/asm/asm.c. This oversight allows remote attackers to exploit the vulnerability, potentially leading to arbitrary writes. Such malicious input can result in application crashes, causing a denial of service, and may enable attackers to achieve other unspecified impacts.
