CVE-2023-47016: Radare RADARE2
High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.
radare2 5.8.9 has an out-of-bounds read in r_bin_object_set_items in libr/bin/bobj.c, causing a crash in r_read_le32 in libr/include/r_endian.h.
Affected products
- Radare RADARE2: before 5.9.0 (fixed in 5.9.0)
Published 2023-11-22. Last modified 2026-06-17.