rpm package
suse/PackageKit&distro=SUSE Linux Enterprise Workstation Extension 15 SP1
pkg:rpm/suse/PackageKit&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015%20SP1
Vulnerabilities (4)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-16121 | Low | 3.3 | < 1.1.10-12.10.1 | 1.1.10-12.10.1 | Nov 7, 2020 | PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user would be unable to determine on its own. | |
| CVE-2018-20534 | Med | 6.5 | < 1.1.10-12.3.5 | 1.1.10-12.3.5 | Dec 28, 2018 | There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will cause a denial of service. NOTE: third parties dispute this issue stating that the issue affects the test suite and not the underlying library. It cannot be exploited in any real- | |
| CVE-2018-20533 | Med | 6.5 | < 1.1.10-12.3.5 | 1.1.10-12.3.5 | Dec 28, 2018 | There is a NULL pointer dereference at ext/testcase.c (function testcase_str2dep_complex) in libsolvext.a in libsolv through 0.7.2 that will cause a denial of service. | |
| CVE-2018-20532 | Med | 6.5 | < 1.1.10-12.3.5 | 1.1.10-12.3.5 | Dec 28, 2018 | There is a NULL pointer dereference at ext/testcase.c (function testcase_read) in libsolvext.a in libsolv through 0.7.2 that will cause a denial of service. |
- affected < 1.1.10-12.10.1fixed 1.1.10-12.10.1
PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user would be unable to determine on its own.
- affected < 1.1.10-12.3.5fixed 1.1.10-12.3.5
There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will cause a denial of service. NOTE: third parties dispute this issue stating that the issue affects the test suite and not the underlying library. It cannot be exploited in any real-
- affected < 1.1.10-12.3.5fixed 1.1.10-12.3.5
There is a NULL pointer dereference at ext/testcase.c (function testcase_str2dep_complex) in libsolvext.a in libsolv through 0.7.2 that will cause a denial of service.
- affected < 1.1.10-12.3.5fixed 1.1.10-12.3.5
There is a NULL pointer dereference at ext/testcase.c (function testcase_read) in libsolvext.a in libsolv through 0.7.2 that will cause a denial of service.