Memory Leak Vulnerability in radare2 by Radareorg
CVE-2025-60358

5.5MEDIUM

Key Information:

Vendor

Radareorg

Status
Vendor
CVE Published:
16 October 2025

What is CVE-2025-60358?

The radare2 software, up to version 5.9.8, has a vulnerability that manifests as a memory leak within the _load_relocations function. This issue can lead to excessive memory consumption, potentially impacting system performance and stability. Users are encouraged to upgrade to the latest version to safeguard against this vulnerability. For more details, visit the official GitHub repository.

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.