threat
engine
.sh
Back
·
··:··
Home
/
Product
/
opensuse libsolv
Product
opensuse libsolv
10 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2021-44568
< 0.7.17
Two heap-overflow vulnerabilities exist in openSUSE/libsolv libsolv through 13 Dec 2020 in the decisionmap variable via the resolv
6.5
MEDIUM
CVE-2021-33938
<= 0.7.17
Buffer overflow vulnerability in function prune_to_recommended in src/policy.c in libsolv before 0.7.17 allows attackers to cause
7.5
HIGH
CVE-2021-33930
<= 0.7.17
Buffer overflow vulnerability in function pool_installable_whatprovides in src/repo.h in libsolv before 0.7.17 allows attackers to
7.5
HIGH
CVE-2021-33929
<= 0.7.17
Buffer overflow vulnerability in function pool_disabled_solvable in src/repo.h in libsolv before 0.7.17 allows attackers to cause
7.5
HIGH
CVE-2021-33928
<= 0.7.17
Buffer overflow vulnerability in function pool_installable in src/repo.h in libsolv before 0.7.17 allows attackers to cause a Deni
7.5
HIGH
CVE-2021-3200
< 0.7.17
Buffer overflow vulnerability in libsolv 2020-12-13 via the Solver
testcase_read(Pool
pool, FILE
fp, const char
testcase, Que
3.3
LOW
CVE-2019-20387
< 0.7.6
repodata_schema2id in repodata.c in libsolv before 0.7.6 has a heap-based buffer over-read via a last schema whose length is less
7.5
HIGH
CVE-2018-20534
<= 0.7.2
There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will cause a denial of service. NO
6.5
MEDIUM
CVE-2018-20533
<= 0.7.2
There is a NULL pointer dereference at ext/testcase.c (function testcase_str2dep_complex) in libsolvext.a in libsolv through 0.7.2
6.5
MEDIUM
CVE-2018-20532
<= 0.7.2
There is a NULL pointer dereference at ext/testcase.c (function testcase_read) in libsolvext.a in libsolv through 0.7.2 that will
6.5
MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin