Name: Ausführen beliebiger Kommandos in radare2
ID: FEDORA-2020-aa51efe207
Distribution: Fedora
Plattformen: Fedora 32
Datum: Fr, 7. August 2020, 07:52
Referenzen: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15121
Applikationen: Radare2


Fedora Update Notification
2020-08-07 01:18:08.804645

Name : radare2
Product : Fedora 32
Version : 4.5.0
Release : 2.fc32
URL : https://radare.org/
Summary : The reverse engineering framework
Description :
The radare2 is a reverse-engineering framework that is multi-architecture,
multi-platform, and highly scriptable. Radare2 provides a hexadecimal
editor, wrapped I/O, file system support, debugger support, diffing
between two functions or binaries, and code analysis at opcode,
basic block, and function levels.

Update Information:

- Rebase radare2 to upstream version 4.5.0 - Rebase cutter to upstream version
1.11.0 - Provide cutter translation - Provide -devel sub package of cutter-re

* Mon Jul 20 2020 Riccardo Schirone <rschirone91@gmail.com> - 4.5.0-2
- Remove the .1 from the version signature
* Mon Jul 20 2020 Riccardo Schirone <rschirone91@gmail.com> - 4.5.0-1
- Rebase to upstream version 4.5.0

[ 1 ] Bug #1859143 - CVE-2020-15121 radare2: malformed PDB file names in the
PDB server path cause shell injection [fedora-all]

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2020-aa51efe207' at the command
line. For more information, refer to the dnf documentation available at

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
