NULL Pointer Dereference Vulnerability in Radare2 by RadareOrg
CVE-2025-63744

Currently unrated

Key Information:

Vendor

RadareOrg

Status
Vendor
CVE Published:
14 November 2025

What is CVE-2025-63744?

A vulnerability has been identified in Radare2 versions 6.0.5 and earlier, where a NULL pointer dereference occurs in the load() function located in bin_dyldcache.c. This issue can be exploited by processing a specially crafted file, leading to a segmentation fault that can crash the application. Users of affected versions are advised to update their software to prevent potential disruptions.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-63744 : NULL Pointer Dereference Vulnerability in Radare2 by RadareOrg