CVE-2026-48864
published 2026-05-26CVE-2026-48864: A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within `.solv` files due to…
PriorityP340high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
0.21%
10.6th percentile
A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within `.solv` files due to insufficient input validation. An attacker can provide a specially crafted `.solv` file, which, when processed by a vulnerable application, can lead to out-of-bounds memory access. This could result in information disclosure, alteration of program execution, or a denial of service.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| opensuse | libsolv | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | openshift_container_platform | — | — |
| redhat | satellite | — | — |
| redhat | update_infrastructure | — | — |
| satellite-capsule_el8 | libsolv | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
libsolv: Heap buffer overflow in libsolv repopagestore via unchecked decompression of malicious .solv page data
vendor_redhat·2026-05-26·CVSS 7.8
CVE-2026-48864 [HIGH] CWE-787 libsolv: Heap buffer overflow in libsolv repopagestore via unchecked decompression of malicious .solv page data
libsolv: Heap buffer overflow in libsolv repopagestore via unchecked decompression of malicious .solv page data
A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within `.solv` files due to insufficient input validation. An attacker can provide a specially crafted `.solv` file, which, when processed by a vulnerable application, can lead to out-of-bounds memory access. This could result in information disclosure, alteration of program execution, or a denial of service.
Statement: This heap buffer overflow in libsolv's page decompression logic can lead to out-of-bounds reads and writes when processing specially crafted `.solv` files. Exploitation requires a victim application to ingest malicious repository metadata
GHSA
GHSA-2927-mfhv-37vh: A flaw was found in libsolv
ghsa_unreviewed·2026-05-26
CVE-2026-48864 [HIGH] CWE-787 GHSA-2927-mfhv-37vh: A flaw was found in libsolv
A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within `.solv` files due to insufficient input validation. An attacker can provide a specially crafted `.solv` file, which, when processed by a vulnerable application, can lead to out-of-bounds memory access. This could result in information disclosure, alteration of program execution, or a denial of service.
No detection rules found.
No public exploits indexed.
https://access.redhat.com/errata/RHSA-2026:21333https://access.redhat.com/errata/RHSA-2026:28236https://access.redhat.com/errata/RHSA-2026:36730https://access.redhat.com/errata/RHSA-2026:39315https://access.redhat.com/errata/RHSA-2026:44481https://access.redhat.com/security/cve/CVE-2026-48864https://bugzilla.redhat.com/show_bug.cgi?id=2460425
2026-05-26
Published