Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-20534

Опубликовано: 28 дек. 2018
Источник: debian

Описание

There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will cause a denial of service. NOTE: third parties dispute this issue stating that the issue affects the test suite and not the underlying library. It cannot be exploited in any real-world application

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libsolvfixed0.6.36-1package

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=1652604

  • https://github.com/openSUSE/libsolv/pull/291

  • https://github.com/openSUSE/libsolv/commit/4830af9d979d3685de538b80fbeba51ad590525e

  • Only affects the test suite

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 7 лет назад

There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will cause a denial of service. NOTE: third parties dispute this issue stating that the issue affects the test suite and not the underlying library. It cannot be exploited in any real-world application

CVSS3: 3.3
redhat
около 7 лет назад

There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will cause a denial of service. NOTE: third parties dispute this issue stating that the issue affects the test suite and not the underlying library. It cannot be exploited in any real-world application

CVSS3: 6.5
nvd
около 7 лет назад

There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will cause a denial of service. NOTE: third parties dispute this issue stating that the issue affects the test suite and not the underlying library. It cannot be exploited in any real-world application

CVSS3: 6.5
github
больше 3 лет назад

** DISPUTED ** There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will cause a denial of service. NOTE: third parties dispute this issue stating that the issue affects the test suite and not the underlying library. It cannot be exploited in any real-world application.

CVSS3: 6.5
fstec
около 7 лет назад

Уязвимость функции pool_whatprovides библиотеки libsolv, позволяющая нарушителю вызвать отказ в обслуживании