CVE-2025-1378

CVSS 3.1 Score 3.3 of 10 (low)

Details

Published Feb 17, 2025
CWE ID 119

Summary

CVE-2025-1378 is a recently disclosed vulnerability affecting radare2 version 5.9.9. This issue, classified as problematic, lies within the unknown function in the rasm2 component's /libr/main/rasm2.c library. Manipulation of this function results in memory corruption, which can be exploited locally. Since the exploit has been made public, it is essential to upgrade to the latest version, 6.0.0, to mitigate the risk. The patch for this vulnerability is identified as c6c772d2eab692ce7ada5a4227afd50c355ad545. It is strongly advised to update the affected component as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share