Количество 11
Количество 11
CVE-2026-48863
A flaw was found in libsolv. A stack-based buffer overflow vulnerability exists in the PGP verification component due to incorrect length handling when copying EdDSA 's' MPI into a stack buffer. A remote attacker could craft a malicious Ed25519 PGP signature with mismatched MPI lengths. Processing this crafted signature could lead to a denial of service in automated package or repository processing workflows.
CVE-2026-48863
A flaw was found in libsolv. A stack-based buffer overflow vulnerability exists in the PGP verification component due to incorrect length handling when copying EdDSA 's' MPI into a stack buffer. A remote attacker could craft a malicious Ed25519 PGP signature with mismatched MPI lengths. Processing this crafted signature could lead to a denial of service in automated package or repository processing workflows.
CVE-2026-48863
A flaw was found in libsolv. A stack-based buffer overflow vulnerability exists in the PGP verification component due to incorrect length handling when copying EdDSA 's' MPI into a stack buffer. A remote attacker could craft a malicious Ed25519 PGP signature with mismatched MPI lengths. Processing this crafted signature could lead to a denial of service in automated package or repository processing workflows.
CVE-2026-48863
Libsolv: stack-based buffer overflow in libsolv eddsa pgp signature verification allows denial of service
CVE-2026-48863
A flaw was found in libsolv. A stack-based buffer overflow vulnerabili ...
GHSA-p3x5-f8vr-q28x
A flaw was found in libsolv. A stack-based buffer overflow vulnerability exists in the PGP verification component due to incorrect length handling when copying EdDSA 's' MPI into a stack buffer. A remote attacker could craft a malicious Ed25519 PGP signature with mismatched MPI lengths. Processing this crafted signature could lead to a denial of service in automated package or repository processing workflows.
openSUSE-SU-2026:21096-1
Security update for zypper, libzypp, libsolv
SUSE-SU-2026:2674-1
Security update for libsolv, libzypp, zypper
SUSE-SU-2026:2590-1
Security update for libsolv, libzypp, zypper
SUSE-SU-2026:2575-1
Security update for libsolv, libzypp, zypper
SUSE-SU-2026:2531-1
Security update for libsolv, libzypp, zypper
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-48863 A flaw was found in libsolv. A stack-based buffer overflow vulnerability exists in the PGP verification component due to incorrect length handling when copying EdDSA 's' MPI into a stack buffer. A remote attacker could craft a malicious Ed25519 PGP signature with mismatched MPI lengths. Processing this crafted signature could lead to a denial of service in automated package or repository processing workflows. | CVSS3: 7.5 | 0% Низкий | 20 дней назад | |
CVE-2026-48863 A flaw was found in libsolv. A stack-based buffer overflow vulnerability exists in the PGP verification component due to incorrect length handling when copying EdDSA 's' MPI into a stack buffer. A remote attacker could craft a malicious Ed25519 PGP signature with mismatched MPI lengths. Processing this crafted signature could lead to a denial of service in automated package or repository processing workflows. | CVSS3: 7.5 | 0% Низкий | 2 месяца назад | |
CVE-2026-48863 A flaw was found in libsolv. A stack-based buffer overflow vulnerability exists in the PGP verification component due to incorrect length handling when copying EdDSA 's' MPI into a stack buffer. A remote attacker could craft a malicious Ed25519 PGP signature with mismatched MPI lengths. Processing this crafted signature could lead to a denial of service in automated package or repository processing workflows. | CVSS3: 7.5 | 0% Низкий | 20 дней назад | |
CVE-2026-48863 Libsolv: stack-based buffer overflow in libsolv eddsa pgp signature verification allows denial of service | CVSS3: 7.5 | 0% Низкий | 19 дней назад | |
CVE-2026-48863 A flaw was found in libsolv. A stack-based buffer overflow vulnerabili ... | CVSS3: 7.5 | 0% Низкий | 20 дней назад | |
GHSA-p3x5-f8vr-q28x A flaw was found in libsolv. A stack-based buffer overflow vulnerability exists in the PGP verification component due to incorrect length handling when copying EdDSA 's' MPI into a stack buffer. A remote attacker could craft a malicious Ed25519 PGP signature with mismatched MPI lengths. Processing this crafted signature could lead to a denial of service in automated package or repository processing workflows. | CVSS3: 7.5 | 0% Низкий | 20 дней назад | |
openSUSE-SU-2026:21096-1 Security update for zypper, libzypp, libsolv | около 2 месяцев назад | |||
SUSE-SU-2026:2674-1 Security update for libsolv, libzypp, zypper | около 1 месяца назад | |||
SUSE-SU-2026:2590-1 Security update for libsolv, libzypp, zypper | около 1 месяца назад | |||
SUSE-SU-2026:2575-1 Security update for libsolv, libzypp, zypper | около 1 месяца назад | |||
SUSE-SU-2026:2531-1 Security update for libsolv, libzypp, zypper | около 1 месяца назад |
Уязвимостей на страницу