CVE-2021-43814 log

Severity Medium
Remote Yes
Type Arbitrary code execution
In Rizin versions up to and including 0.3.1 there is a heap-based out of bounds write in parse_die() when reversing an AMD64 ELF binary with DWARF debug info. When a malicious AMD64 ELF binary is opened by a victim user, Rizin may crash or execute unintended actions.
Group Package Affected Fixed Severity Status Ticket
AVG-2590 rizin 0.3.0-1 Medium Vulnerable