The sh_op() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted ELF file.
[
{
"signature_type": "Line",
"digest": {
"line_hashes": [
"189433578542933982838747256574816422227",
"158735569826761234377372695041498042996",
"35313078242998185992414146927014225632",
"195564036888377431558360896683666571693",
"256212223745787217962407506107919491637"
],
"threshold": 0.9
},
"target": {
"file": "libr/anal/p/anal_sh.c"
},
"deprecated": false,
"id": "CVE-2018-11384-91ba5710",
"source": "https://github.com/radareorg/radare2/commit/77c47cf873dd55b396da60baa2ca83bbd39e4add",
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"length": 594.0,
"function_hash": "54169014298782402503783014203937854054"
},
"target": {
"function": "sh_op",
"file": "libr/anal/p/anal_sh.c"
},
"deprecated": false,
"id": "CVE-2018-11384-dbad63a8",
"source": "https://github.com/radareorg/radare2/commit/77c47cf873dd55b396da60baa2ca83bbd39e4add",
"signature_version": "v1"
}
]