CVE-2020-17487: Fedoraproject Fedora
High severity, CVSS 7.5. EPSS: 1.8% chance of exploitation in the next 30 days.
radare2 4.5.0 misparses signature information in PE files, causing a segmentation fault in r_x509_parse_algorithmidentifier in libr/util/x509.c. This is due to a malformed object identifier in IMAGE_DIRECTORY_ENTRY_SECURITY.
Affected products
- Fedoraproject Fedora: version 32 only; version 33 only
- Radare RADARE2: version 4.5.0 only
Published 2020-08-11. Last modified 2026-06-17.