{"id":"openSUSE-SU-2026:20653-1","summary":"Security update for radare2","details":"This update for radare2 fixes the following issues:\n\nChanges in radare2:\n\n- Update to version 6.1.4 (bsc#1262142, CVE-2026-40499):\n  * Analysis: improve autoname scoring, jmptbl detection, and performance\n  * Add callargs modifier, rnum expressions, and typed function context\n  * Refactor autoname into plugin; extend RAnalPlugin hooks\n  * Fix leaks, overflows, and command injection in analysis scripts\n  * Improve string detection, wide strings, and switch/case analysis\n  * Arch: fix v850/nds32 ESIL, optimize to O(1), improve pseudo support\n  * Cache capstone options and improve multi-arch disassembly\n  * ASM: add camel syntax support, unify via RArch API\n  * Bin: major parser fixes (ELF, Mach-O, PE, DEX, PDB, WAD, XCOFF)\n  * Fix leaks, OOB reads/writes, overflows, and improve bounds checks\n  * Improve Swift demangling, ARM hints, relocations, and imports\n  * Add nds32 reloc support and optimize kernelcache parsing\n  * Build: install to lib64, fix illumos and packaging issues\n  * CI: add GitHub Actions and FilC builds\n  * Console: fix multiple overflows, OOB issues, and improve performance\n  * Core: API renames, plugin load order, sandbox/config fixes\n  * Crash: extensive fixes (UAF, OOB, overflows, injections, fuzz bugs)\n  * Harden ELF, PDB, kernelcache, regex, disassemblers, and webserver\n  * Debug: improve ptrace, winkd support, breakpoints, checkpoints\n  * Disasm: cache flag lookups for performance\n  * FS/IO: fix leaks, bounds, sparse IO, and device handling\n  * HTTP/socket: webserver fixes and SSL fallback handling\n  * Print/projects: improve formatting, endian handling, project metadata\n  * Pseudo: add while/switch support and cleaner control flow\n  * Search/shell: improve commands, parsing, and usability\n  * Security: fix widespread command injection and sandbox escapes\n  * Tests/tools: improve r2r, CLI tools, fuzzing, and plugin support\n  * Types/util: parsing improvements, JSON/base64 updates, optimizations\n  * Visual: fix UAF/leaks, improve panels and UX\n  * Full changelog is available at:\n    https://github.com/radareorg/radare2/releases/tag/6.1.4\n\n- Update to version 6.1.2:\n  * Analysis: preserve timeouts, improve bb/jmptbl validation and limits\n  * Optimize string detection and hot-path functions\n  * Add APIs for function signatures, vars limits, and instruction hints\n  * Fix overlapped functions, invalid code checks, and large bb handling\n  * API: remove deprecated librmagic/filetype APIs and name filter\n  * Arch: fix Thumb/endianness issues, add Python pseudo plugin\n  * ASM: unify settings via RArch, fix directives, add bf pseudo plugin\n  * Bin: improve ELF/Mach-O stripped detection and parsing safety\n  * Harden Mach-O bounds, optimize kernelcache and XNU parsing\n  * Fix many leaks (DEX, demangler, parsers) and infinite loops\n  * Improve DWARF handling and symbol/type extraction\n  * Build: improve meson, toolchains, and add ISO/docker support\n  * Console: preserve timeout, fix themes and UTF-8 handling\n  * Core: fix config bugs, improve startup and addressing support\n  * Crash: fix UAF, OOB, race conditions, regex bugs, and overflows\n  * Add safety checks across dotnet, Mach-O, DWARF, and webserver\n  * Debug/ESIL: safer execution and divide-by-zero handling\n  * FS/IO: fix HFS+, dyldcache speedups, safer zip handling\n  * Graph: add bb size limit option\n  * Print: merge commands, improve UTF-8 and formatting\n  * Projects/tools: new configs, plugin support, CLI improvements\n  * Search: faster analysis search and block buffering\n  * Shell: improve grep/macros and file operations\n  * Types: lazy-load, cache, and improve parsing (varargs, structs)\n  * Tests: expand fuzzing and test suites\n  * General cleanup, performance tuning, and safety improvements\n  * Full changelog is available at:\n    https://github.com/radareorg/radare2/releases/tag/6.1.4\n\n- Update to version 6.1.0:\n  * Reimplement RBufRef using RRef; fix RLibDelHandler API\n  * Remove stale JAY code; improve analysis performance and CI speed\n  * Optimize type propagation, jump tables, and plugin integration\n  * Fix infinite loops, antidisasm tricks, and function autonaming\n  * Add new analysis options and trace import plugin (DRCOV)\n  * Improve RCore seek operations and naming APIs\n  * API: add RNum.getErr, enforce safe alloc macros, new helpers\n  * Arch: update ARC disasm, refactor sessions, remove unsafe string ops\n  * ASM: improve x86 validation, add CIL and ARC pseudo plugins\n  * Bin: major fixes for PE, ELF, Java, MDMP, LE, DEX; reduce memory use\n  * Add/import DWARF types, improve relocations and symbol handling\n  * Extensive memory leak fixes and parser hardening across formats\n  * Improve string handling, caching, and zero-copy optimizations\n  * Build: improve meson, remove zip deps, add 3rd-party plugin support\n  * Console: fix UTF-8 graphs and color propagation\n  * Core: improve plugin handling and background task stability\n  * Crash: fix multiple UAF, OOB, overflows, and injection issues\n  * Sanitize inputs (function names, demangler, callconv)\n  * Debug: add source breakpoints, ARM64/XNU support, FPU regs\n  * Disasm: improve string handling, comments, and color logic\n  * ESIL: extend x86 FPU emulation\n  * FS/IO: fixes and plugin reorganizations\n  * HTTP: fix sandbox webserver issues\n  * Hash/tools: minor fixes and output improvements\n  * General cleanup, safety checks, and performance optimizations\n  * Full changelog is available at:\n    https://github.com/radareorg/radare2/releases/tag/6.1.0\n\n- Update to version 6.0.8:\n  * Migrate r_vector to RVec across core components\n  * Refactor and optimize type propagation (now plugin-based)\n  * Remove redundant anal.a2f and related duplication\n  * Improve caching, memoization, and performance in analysis\n  * Fix file corruption, null asserts, and command issues\n  * Enhance x86 (AT&T syntax, enter instruction) and z80 support\n  * Add initial .NET (CIL) disasm/asm support\n  * Improve Java, ELF, Mach-O, APK, and PDB handling\n  * Fix demangling, symbols, and relocation issues\n  * Resolve multiple memory leaks and parser bugs\n  * Fix UAF, OOB, overflows, and command injection vulnerabilities\n  * Improve GDB debugging and breakpoint handling\n  * Enhance disassembly visuals and color options\n  * Update ESIL operators and behavior\n  * Add support for APFS, GPT, BSD, APM partitions\n  * Improve IO handling and add new plugins\n  * Optimize performance (strbuf, memory usage)\n  * Improve console UI, themes, and terminal handling\n  * Refine SDK builds and CI pipelines\n  * Improve CLI tools (rabin2, rasm2, rafs2)\n  * Add JSON support and better help/version info\n  * Expand type parsing (typedef, enum, union)\n  * Improve socket/HTTP handling and downloads\n  * Add and refine tests and reporting\n  * General cleanup, safety checks, and code modernization\n  * Full changelog is available at:\n    https://github.com/radareorg/radare2/releases/tag/6.0.8\n\n- Update to version 6.0.7:\n  * shell: Fix parsing r2 -H$(VARNAME) without a space\n\n- Update to version 6.0.6:\n  * Full changelog is available at:\n    https://github.com/radareorg/radare2/releases/tag/6.0.6\n\n- Update to version 6.0.4:\n  * Full changelog is available at:\n    https://github.com/radareorg/radare2/releases/tag/6.0.4\n\n- Update to version 6.0.2:\n  * Full changelog is available at:\n    https://github.com/radareorg/radare2/releases/tag/6.0.2\n\n- Update to version 6.0.0:\n  * ABI changes:\n    ~ RCorePlugins now have a session\n    ~ Finish the RKons refactoring, all r_cons calls take instance instead of global\n    ~ Rename RCrypto to RMuta\n    ~ Use RCons instance from RLine\n    ~ Rename RIOPlugin.widget to RIOPlugin.data\n    ~ Refactor the RRegAlias api\n    ~ Camelcase all the RCoreBind methods\n  * Breaking API changes:\n    ~ Boolify r_cons_rgb_parse\n    ~ Add RLogLevel.fromString() and use it from -e log.level=?\n    ~ Deprecate r_bin_addr2line\n    ~ Rename RBinDbgItem into RBinAddrline\n    ~ RNumCalc is now known as RNumMath\n    ~ Move RFlagItem.alias into the Meta\n    ~ Rename core-\u003eoffset into core-\u003eaddr (asm.offset and more!)\n    ~ Rename RFlagItem.offset -\u003e addr\n  * API changes:\n    ~ Boolify r_cons_rgb_parse\n    ~ Add RLogLevel.fromString() and use it from -e log.level=?\n    ~ Deprecate r_bin_addr2line\n    ~ Rename RBinDbgItem into RBinAddrline\n    ~ RNumCalc is now known as RNumMath\n    ~ Move RFlagItem.alias into the Meta\n    ~ Rename core-\u003eoffset into core-\u003eaddr (asm.offset and more!)\n    ~ Rename RFlagItem.offset -\u003e addr\n    ~ Deprecate RLang.list()\n    ~ Unified function to jsonify the plugin meta + more fields\n    ~ Redesign the REvent API\n  * Full changelog is available at:\n    https://github.com/radareorg/radare2/releases/tag/6.0.0\n\n- CVE-2025-5641: Fix memory corruption by manipulation of the argument -T (bsc#1244121)\n- CVE-2025-1864: Fix buffer overflow and potential code execution (bsc#bsc#1238451)\n- CVE-2025-1744: Fix heap-based buffer over-read or buffer overflow (bsc#1238075)\n- CVE-2025-1378: Fix memory corruption (bsc#1237250)\n\n- Update to version 5.9.8:\n  * Resolved CVE:\n    - CVE-2024-29645: buffer overflow vulnerability allows an attacker to\n      execute arbitrary code via the parse_die function (boo#1234065).\n  For details, check full release notes:\n  https://github.com/radareorg/radare2/releases/tag/5.9.8\n  https://github.com/radareorg/radare2/releases/tag/5.9.6\n  https://github.com/radareorg/radare2/releases/tag/5.9.4\n  https://github.com/radareorg/radare2/releases/tag/5.9.2\n  https://github.com/radareorg/radare2/releases/tag/5.9.0\n","modified":"2026-05-01T18:27:00.404849Z","published":"2026-04-29T08:45:46Z","related":["CVE-2024-29645","CVE-2025-1378","CVE-2025-1744","CVE-2025-1864","CVE-2025-5641","CVE-2026-40499"],"upstream":["CVE-2024-29645","CVE-2025-1378","CVE-2025-1744","CVE-2025-1864","CVE-2025-5641","CVE-2026-40499"],"references":[{"type":"ADVISORY"},{"type":"REPORT","url":"https://bugzilla.suse.com/1234065"},{"type":"REPORT","url":"https://bugzilla.suse.com/1237250"},{"type":"REPORT","url":"https://bugzilla.suse.com/1238075"},{"type":"REPORT","url":"https://bugzilla.suse.com/1238451"},{"type":"REPORT","url":"https://bugzilla.suse.com/1244121"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262142"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-29645"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-1378"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-1744"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-1864"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-5641"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-40499"}],"schema_version":"1.7.5"}