Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-33929

Опубликовано: 13 дек. 2020
Источник: redhat
CVSS3: 7.5

Описание

Buffer overflow vulnerability in function pool_disabled_solvable in src/repo.h in libsolv before 0.7.17 allows attackers to cause a Denial of Service.

A flaw was found in libsolv. A buffer overflow vulnerability in the pool_disabled_solvable function allows attackers to cause a denial of service. The highest threat from this vulnerability is to system availability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Ansible Automation Platform 1.2libsolvNot affected
Red Hat Enterprise Linux 7libsolvOut of support scope
Red Hat Enterprise Linux 9libsolvNot affected
Red Hat Update Infrastructure 3 for Cloud ProviderslibsolvWill not fix
Red Hat Enterprise Linux 8libsolvFixedRHSA-2021:406002.11.2021
Red Hat Satellite 6.11 for RHEL 7libsolvFixedRHSA-2022:549805.07.2022
Red Hat Satellite 6.11 for RHEL 7libsolvFixedRHSA-2022:549805.07.2022
Red Hat Satellite 6.11 for RHEL 8libsolvFixedRHSA-2022:549805.07.2022
Red Hat Satellite 6.11 for RHEL 8libsolvFixedRHSA-2022:549805.07.2022

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=2000703libsolv: heap-based buffer overflow in pool_disabled_solvable() in src/repo.h

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 4 года назад

Buffer overflow vulnerability in function pool_disabled_solvable in src/repo.h in libsolv before 0.7.17 allows attackers to cause a Denial of Service.

CVSS3: 7.5
nvd
почти 4 года назад

Buffer overflow vulnerability in function pool_disabled_solvable in src/repo.h in libsolv before 0.7.17 allows attackers to cause a Denial of Service.

CVSS3: 7.5
msrc
почти 4 года назад

Описание отсутствует

CVSS3: 7.5
debian
почти 4 года назад

Buffer overflow vulnerability in function pool_disabled_solvable in sr ...

github
около 3 лет назад

Buffer overflow vulnerability in function pool_disabled_solvable in src/repo.h in libsolv before 0.7.17 allows attackers to cause a Denial of Service.

7.5 High

CVSS3

Уязвимость CVE-2021-33929