C’è un NULL pointer dereference a ext / testcase.c (funzione testcase_str2dep_complex) in libsolvext.a in libsolv attraverso 0.7.2 che causerà una negazione del servizio. |
https://bugzilla.redhat.com/show_bug.cgi?id=1652599 https://github.com/openSUSE/libsolv/pull/291 https://access.redhat.com/errata/RHSA-2019:2290 http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00057.html https://usn.ubuntu.com/3916-1/ https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20533 |
Vulnerabilità: CVE-2018-20533
