CVE-2017-10929: Radare RADARE2
High severity, CVSS 7.8. EPSS: 1.9% chance of exploitation in the next 30 days.
The grub_memmove function in shlr/grub/kern/misc.c in radare2 1.5.0 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, possibly related to a read overflow in the grub_disk_read_small_real function in kern/disk.c in GNU GRUB 2.02.
Affected products
- Radare RADARE2: version 1.5.0 only
Published 2017-07-05. Last modified 2026-06-17.