Rizin is a UNIX-like reverse engineering framework and command-line toolset. In versions up to and including 0.3.1 there is a heap-based out of bounds write in parse_die() when reversing an AMD64 ELF binary with DWARF debug info. When a malicious AMD64 ELF binary is opened by a victim user, Rizin may crash or execute unintended actions. No workaround are known and users are advised to upgrade.
Cite this page
CVE-2021-43814. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2021-43814
Use CWE-787, Rizin vendor hub and Rizin product page to widen CVE-2021-43814 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-31668, CVE-2023-40022 and CVE-2021-3674 for nearby disclosures in the same product family.