VYPR
Medium severity5.3NVD Advisory· Published Apr 3, 2023· Updated Jun 17, 2026

CVE-2023-26916

CVE-2023-26916

Description

libyang from v2.0.164 to v2.1.30 was discovered to contain a NULL pointer dereference via the function lys_parse_mem at lys_parse_mem.c.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • Cesnet/libyang2 versions
    cpe:2.3:a:cesnet:libyang:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:cesnet:libyang:*:*:*:*:*:*:*:*range: >=2.0.164,<=2.1.30
    • (no CPE)range: >=v2.0.164 <=v2.1.30
  • cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
    • cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
  • libyang/libyangcpe-rescue

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.