Rizin is a reverse-engineering and binary-analysis framework that, despite a narrow product scope, occupies a prominent position in the security-research and vulnerability-analysis toolchain. The vulnerability footprint concentrates in the core Rizin tool itself and recurs through memory-safety and resource-management weakness classes including out-of-bounds writes, classic buffer overflows, improper memory-buffer bounds restrictions, unchecked resource allocation, and double-free conditions—exposures typical of a complex parser and disassembly engine handling untrusted binary inputs. Because Rizin is often run against adversary-controlled or unknown binaries as part of threat analysis and malware examination, memory-safety flaws in the parser chain can crash or corrupt analysis sessions, impacting the reliability of reverse-engineering workflows. Defenders and researchers using this tool should treat updates as relevant to analysis integrity and consider the memory-safety profile when processing suspected malicious or unstable binaries. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Rizin over time
Signals from CVEs in this vendor scope (20 CVEs).
20 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-3674HIGH A flaw was found in rizin. The create_section_from_phdr function allocates space for ELF section data by processing the headers. Crafted values in the headers can cause out of boun | Mar 24, 2023 | 7.8 | 25 | NO | NO |
CVE-2022-36044HIGH Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to an out-of-bounds write when getting data from Luac files. A | Sep 6, 2022 | 7.8 | 25 | NO | NO |
CVE-2022-36043HIGH Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to a double free in bobj.c:rz_bin_reloc_storage_free() when fre | Sep 6, 2022 | 7.8 | 25 | NO | NO |
CVE-2022-36041HIGH Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to an out-of-bounds write when parsing Mach-O files. A user ope | Sep 6, 2022 | 7.8 | 25 | NO | NO |
CVE-2022-36040HIGH Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to an out-of-bounds write when getting data from PYC(python) fi | Sep 6, 2022 | 7.8 | 25 | NO | NO |
CVE-2022-36039HIGH Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to out-of-bounds write when parsing DEX files. A user opening a | Sep 6, 2022 | 7.8 | 25 | NO | NO |
CVE-2021-43814HIGH Rizin is a UNIX-like reverse engineering framework and command-line toolset. In versions up to and including 0.3.1 there is a heap-based out of bounds write in parse_die() when rev | Dec 13, 2021 | 7.8 | 25 | NO | NO |
CVE-2024-31668CRITICAL rizin before v0.6.3 is vulnerable to Improper Neutralization of Special Elements via meta_set function in librz/analysis/meta. | Dec 17, 2024 | 9.1 | 24 | NO | NO |
CVE-2023-27590HIGH Rizin is a UNIX-like reverse engineering framework and command-line toolset. In version 0.5.1 and prior, converting a GDB registers profile file into a Rizin register profile can r | Mar 14, 2023 | 7.8 | 24 | NO | NO |
CVE-2022-36042HIGH Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.4.0 and prior are vulnerable to an out-of-bounds write when getting data from dyld cache fil | Sep 6, 2022 | 7.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (20 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Rizin.
Media articles that mention a CVE ID that affects a product developed by Rizin — matched by CVE ID, not by vendor name.