Loading
Radare2 v5.7.2 was discovered to contain a NULL pointer dereference via the function r_bin_file_xtr_load_buffer at bin/bfile.c. This vulnerability allows attackers to cause a Denial of Service (DOS) via a crafted binary file.
Cite this page
CVE-2022-34520. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2022-34520
Use CWE-476, Radare vendor hub and Radare2 product page to widen CVE-2022-34520 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-40517, CVE-2026-6941 and CVE-2026-6940 for nearby disclosures in the same product family.