CVE-2020-24133: Radare RADARE2-Extras

Critical severity, CVSS 9.8. EPSS: 2.6% chance of exploitation in the next 30 days.

A heap buffer overflow vulnerability in the r_asm_swf_disass function of Radare2-extras before commit e74a93c allows attackers to execute arbitrary code or carry out denial of service (DOS) attacks.

Affected products

  • Radare RADARE2-Extras: before 5.1.0 (fixed in 5.1.0)

Published 2021-07-14. Last modified 2026-06-17.