CVE-2017-15368: Radare RADARE2
High severity, CVSS 7.8. EPSS: 1.3% chance of exploitation in the next 30 days.
The wasm_dis function in libr/asm/arch/wasm/wasm.c in radare2 2.0.0 allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted WASM file that triggers an incorrect r_hex_bin2str call.
Affected products
- Radare RADARE2: version 2.0.0 only
Published 2017-10-16. Last modified 2026-06-17.