CVE-2017-16358: Radare RADARE2

High severity, CVSS 7.8. EPSS: 1% chance of exploitation in the next 30 days.

In radare 2.0.1, an out-of-bounds read vulnerability exists in string_scan_range() in libr/bin/bin.c when doing a string search.

Affected products

  • Radare RADARE2: version 2.0.1 only

Published 2017-11-01. Last modified 2026-06-17.