CVE-2019-20387
21.01.2020, 23:15
repodata_schema2id in repodata.c in libsolv before 0.7.6 has a heap-based buffer over-read via a last schema whose length is less than the length of the input schema.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| opensuse | libsolv | 𝑥 < 0.7.6 |
| debian | debian_linux | 8.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libsolv-devel |
| ||||||||||||
| libsolv-tools |
| ||||||||||||
| libzypp |
| ||||||||||||
| libzypp-devel |
| ||||||||||||
| perl-solv |
| ||||||||||||
| python-solv |
|
Red Hat Enterprise Linux Releases
Common Weakness Enumeration
References