unicorn@2.0.0rc6 vulnerabilities

Unicorn CPU emulator engine

  • latest version

    2.1.2

  • latest non vulnerable version

  • first published

    8 years ago

  • latest version published

    9 days ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the unicorn package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • H
    Denial of Service (DoS)

    unicorn is an Unicorn CPU emulator engine

    Affected versions of this package are vulnerable to Denial of Service (DoS) due to a memory leak via the function uc_close at /my/unicorn/uc.c.

    How to fix Denial of Service (DoS)?

    Upgrade unicorn to version 2.0.0rc7 or higher.

    [,2.0.0rc7)
    • H
    NULL Pointer Dereference

    unicorn is an Unicorn CPU emulator engine

    Affected versions of this package are vulnerable to NULL Pointer Dereference via qemu_ram_free.

    How to fix NULL Pointer Dereference?

    Upgrade unicorn to version 2.0.0rc7 or higher.

    [,2.0.0rc7)
    • H
    Denial of Service (DoS)

    unicorn is an Unicorn CPU emulator engine

    Affected versions of this package are vulnerable to Denial of Service (DoS) due to memory leaks caused by an incomplete unicorn engine initialization.

    How to fix Denial of Service (DoS)?

    Upgrade unicorn to version 2.0.0rc7 or higher.

    [,2.0.0rc7)
    • H
    Use After Free

    unicorn is an Unicorn CPU emulator engine

    Affected versions of this package are vulnerable to Use After Free via the hook function.

    How to fix Use After Free?

    Upgrade unicorn to version 2.0.0 or higher.

    [0,2.0.0)