CVE-2022-0518 is a heap-based buffer overflow vulnerability affecting radareorg/radare2 prior to version 5.6.2, as well as various Fedora Project distributions of radare2. With a CVSS score of 7.1 (HIGH), this vulnerability can lead to high impact on availability and confidentiality, requiring user interaction and local access for exploitation. Despite its severity, there is currently no evidence of active exploitation, nor are there publicly available exploit modules like Metasploit or Nuclei. Community discussion and media coverage for this CVE are also minimal, indicating low public awareness.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 5.6.2CPE matchmatch criteria | cpe:2.3:a:radare:radare2:*:*:*:*:*:*:*:* | ||
35CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:* | ||
36CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.