UbuntuUpdates.org

Package "radare2"

Name: radare2

Description:

free and advanced command line hexadecimal editor

Latest version: 5.9.8+dfsg-2ubuntu0.25.10.2
Release: questing (25.10)
Level: updates
Repository: universe
Homepage: https://www.radare.org

Links


Download "radare2"


Other versions of "radare2" in Questing

Repository Area Version
base universe 5.9.8+dfsg-2
security universe 5.9.8+dfsg-2ubuntu0.25.10.2

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 5.9.8+dfsg-2ubuntu0.25.10.2 2025-12-09 18:32:59 UTC

  radare2 (5.9.8+dfsg-2ubuntu0.25.10.2) questing-security; urgency=medium

  * SECURITY UPDATE: deninal of service
    - debian/patches/CVE-2025-60361.patch: Fix memleak in function
    bochs_open
    - debian/patches/CVE-2025-60359.patch: Fix memleaks when RBinObject
    allocation fails
    - debian/patches/CVE-2025-60360.patch: fix memleak in function
    r2r_subprocess_init
    - CVE-2025-60361
    - CVE-2025-60359
    - CVE-2025-60360

 -- Julia Sarris <email address hidden> Wed, 29 Oct 2025 15:10:26 -0400

Source diff to previous version
CVE-2025-60361 radare2 v5.9.8 and before contains a memory leak in the function bochs_open.
CVE-2025-60359 radare2 v5.9.8 and before contains a memory leak in the function r_bin_object_new.
CVE-2025-60360 radare2 v5.9.8 and before contains a memory leak in the function r2r_subprocess_init.

Version: 5.9.8+dfsg-2ubuntu0.25.10.1 2025-10-29 14:07:23 UTC

  radare2 (5.9.8+dfsg-2ubuntu0.25.10.1) questing-security; urgency=medium

  * SECURITY UPDATE: denial of service
    - debian/patches/CVE-2025-60358.patch: Fix memleak in function
    _load_relocations
    - CVE-2025-60358

 -- Julia Sarris <email address hidden> Wed, 22 Oct 2025 15:09:34 -0400

CVE-2025-60358 radare2 v.5.9.8 and before contains a memory leak in the function _load_relocations.



About   -   Send Feedback to @ubuntu_updates