Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2026:2334-1

Опубликовано: 10 июн. 2026
Источник: suse-cvrf

Описание

Security update for libyang

This update for libyang fixes the following issues

  • CVE-2026-41401: use-after-free in lyd_parser_set_data_flags when processing crafted YANG XML documents with specific metadata attributes (bsc#1266316).
  • CVE-2026-44673: integer overflow in lyb_read_string() of src/parser_lyb.c leads to heap buffer overflow when parsing a maliciously crafted LYB binary blob (bsc#1265330).

Список пакетов

SUSE Linux Enterprise Server 12 SP5-LTSS
libyang2-2.1.148-8.8.1
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5
libyang2-2.1.148-8.8.1

Описание

libyang before 5.2.6 contains a heap use-after-free write vulnerability in lyd_parser_set_data_flags that incorrectly updates metadata list pointers when freeing non-head default metadata entries. Attackers can trigger this vulnerability by submitting crafted YANG XML documents with specific metadata attributes to applications parsing untrusted XML data, causing process crashes or potential code execution.


Затронутые продукты
SUSE Linux Enterprise Server 12 SP5-LTSS:libyang2-2.1.148-8.8.1
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libyang2-2.1.148-8.8.1

Ссылки

Описание

libyang is a YANG data modeling language library. Prior to SO 5.2.15, lyb_read_string() in src/parser_lyb.c contains an integer overflow that results in a heap buffer overflow when parsing a maliciously crafted LYB binary blob. An attacker who can supply LYB data to any libyang consumer (NETCONF server, sysrepo, etc.) can trigger a crash or potential heap corruption. This vulnerability is fixed in SO 5.2.15.


Затронутые продукты
SUSE Linux Enterprise Server 12 SP5-LTSS:libyang2-2.1.148-8.8.1
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libyang2-2.1.148-8.8.1

Ссылки
Уязвимость SUSE-SU-2026:2334-1