VYPR

rpm package

suse/libsolv&distro=SUSE Linux Enterprise Software Development Kit 12 SP4

pkg:rpm/suse/libsolv&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP4

Vulnerabilities (3)

  • CVE-2018-20534Dec 28, 2018
    affected < 0.6.36-2.16.2fixed 0.6.36-2.16.2

    There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will cause a denial of service. NOTE: third parties dispute this issue stating that the issue affects the test suite and not the underlying library. It cannot be exploited in any real-

  • CVE-2018-20533Dec 28, 2018
    affected < 0.6.36-2.16.2fixed 0.6.36-2.16.2

    There is a NULL pointer dereference at ext/testcase.c (function testcase_str2dep_complex) in libsolvext.a in libsolv through 0.7.2 that will cause a denial of service.

  • CVE-2018-20532Dec 28, 2018
    affected < 0.6.36-2.16.2fixed 0.6.36-2.16.2

    There is a NULL pointer dereference at ext/testcase.c (function testcase_read) in libsolvext.a in libsolv through 0.7.2 that will cause a denial of service.