cbcvebase.

Opensuse Libsolv vulnerabilities

14 known vulnerabilities affecting opensuse/libsolv.

Total CVEs
14
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH7MEDIUM6LOW1

Vulnerabilities

Page 1 of 1
CVE-2026-48863P3HIGHCVSS 7.5≥ 0.6.4, < 0.7.382026-07-16
CVE-2026-48863 [HIGH] CWE-121 CVE-2026-48863: A flaw was found in libsolv. A stack-based buffer overflow vulnerability exists in the PGP verificat A flaw was found in libsolv. A stack-based buffer overflow vulnerability exists in the PGP verification component due to incorrect length handling when copying EdDSA 's' MPI into a stack buffer. A remote attacker could craft a malicious Ed25519 PGP signature with mismatched MPI lengths. Processing this crafted signature could lead to a denial of servi
nvd
CVE-2026-48864P3HIGHCVSS 7.8v0.7.362026-05-26
CVE-2026-48864 [HIGH] CWE-787 CVE-2026-48864: A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-c A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within `.solv` files due to insufficient input validation. An attacker can provide a specially crafted `.solv` file, which, when processed by a vulnerable application, can lead to out-of-bounds memory access. This could result
nvd
CVE-2026-9150P3MEDIUMCVSS 6.5≤ 0.7.362026-05-20
CVE-2026-9150 [MEDIUM] CWE-121 CVE-2026-9150: A flaw was found in libsolv. This stack-based buffer overflow vulnerability occurs in libsolv's Debi A flaw was found in libsolv. This stack-based buffer overflow vulnerability occurs in libsolv's Debian metadata parser when processing specially crafted Debian repository metadata. An attacker could exploit this by providing malicious SHA384 or SHA512 checksum tags, leading to memory corruption and a denial of service (DoS) in the affected system.
nvd
CVE-2019-20387P4HIGHCVSS 7.5fixed in 0.7.62020-01-21
CVE-2019-20387 [HIGH] CWE-125 CVE-2019-20387: repodata_schema2id in repodata.c in libsolv before 0.7.6 has a heap-based buffer over-read via a las repodata_schema2id in repodata.c in libsolv before 0.7.6 has a heap-based buffer over-read via a last schema whose length is less than the length of the input schema.
nvdosv
CVE-2021-33928P4HIGHCVSS 7.5≤ 0.7.172021-09-02
CVE-2021-33928 [HIGH] CWE-787 CVE-2021-33928: Buffer overflow vulnerability in function pool_installable in src/repo.h in libsolv before 0.7.17 al Buffer overflow vulnerability in function pool_installable in src/repo.h in libsolv before 0.7.17 allows attackers to cause a Denial of Service.
nvdosv
CVE-2021-33930P4HIGHCVSS 7.5≤ 0.7.172021-09-02
CVE-2021-33930 [HIGH] CWE-787 CVE-2021-33930: Buffer overflow vulnerability in function pool_installable_whatprovides in src/repo.h in libsolv bef Buffer overflow vulnerability in function pool_installable_whatprovides in src/repo.h in libsolv before 0.7.17 allows attackers to cause a Denial of Service.
nvdosv
CVE-2021-33929P4HIGHCVSS 7.5≤ 0.7.172021-09-02
CVE-2021-33929 [HIGH] CWE-787 CVE-2021-33929: Buffer overflow vulnerability in function pool_disabled_solvable in src/repo.h in libsolv before 0.7 Buffer overflow vulnerability in function pool_disabled_solvable in src/repo.h in libsolv before 0.7.17 allows attackers to cause a Denial of Service.
nvdosv
CVE-2021-33938P4HIGHCVSS 7.5≤ 0.7.172021-09-02
CVE-2021-33938 [HIGH] CWE-787 CVE-2021-33938: Buffer overflow vulnerability in function prune_to_recommended in src/policy.c in libsolv before 0.7 Buffer overflow vulnerability in function prune_to_recommended in src/policy.c in libsolv before 0.7.17 allows attackers to cause a Denial of Service.
nvdosv
CVE-2026-9149P4MEDIUMCVSS 6.5≤ 0.7.362026-05-21
CVE-2026-9149 [MEDIUM] CWE-122 CVE-2026-9149: A flaw was found in libsolv. This heap buffer overflow vulnerability occurs when a victim processes A flaw was found in libsolv. This heap buffer overflow vulnerability occurs when a victim processes a specially crafted `.solv` file containing negative size values in the `repo_add_solv` function. This leads to an undersized memory allocation and a subsequent out-of-bounds write. An attacker could exploit this to cause a denial of service (DoS).
nvd
CVE-2021-44568P4MEDIUMCVSS 6.5fixed in 0.7.172022-02-21
CVE-2021-44568 [MEDIUM] CWE-787 CVE-2021-44568: Two heap-overflow vulnerabilities exist in openSUSE/libsolv libsolv through 13 Dec 2020 in the decis Two heap-overflow vulnerabilities exist in openSUSE/libsolv libsolv through 13 Dec 2020 in the decisionmap variable via the resolve_dependencies function at src/solver.c (line 1940 & line 1995), which could cause a remote Denial of Service.
nvdosv
CVE-2018-20534P4MEDIUMCVSS 6.5≤ 0.7.22018-12-28
CVE-2018-20534 [MEDIUM] CWE-119 CVE-2018-20534: There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will cause a denial of service. NOTE: third parties dispute this issue stating that the issue affects the test suite and not the underlying library. It cannot be exploited in any real-world application
nvdosv
CVE-2018-20533P4MEDIUMCVSS 6.5≤ 0.7.22018-12-28
CVE-2018-20533 [MEDIUM] CWE-476 CVE-2018-20533: There is a NULL pointer dereference at ext/testcase.c (function testcase_str2dep_complex) in libsolv There is a NULL pointer dereference at ext/testcase.c (function testcase_str2dep_complex) in libsolvext.a in libsolv through 0.7.2 that will cause a denial of service.
nvdosv
CVE-2018-20532P4MEDIUMCVSS 6.5≤ 0.7.22018-12-28
CVE-2018-20532 [MEDIUM] CWE-476 CVE-2018-20532: There is a NULL pointer dereference at ext/testcase.c (function testcase_read) in libsolvext.a in li There is a NULL pointer dereference at ext/testcase.c (function testcase_read) in libsolvext.a in libsolv through 0.7.2 that will cause a denial of service.
nvdosv
CVE-2021-3200P4LOWCVSS 3.3fixed in 0.7.172021-05-18
CVE-2021-3200 [LOW] CWE-120 CVE-2021-3200: Buffer overflow vulnerability in libsolv 2020-12-13 via the Solver * testcase_read(Pool *pool, FILE Buffer overflow vulnerability in libsolv 2020-12-13 via the Solver * testcase_read(Pool *pool, FILE *fp, const char *testcase, Queue *job, char **resultp, int *resultflagsp function at src/testcase.c: line 2334, which could cause a denial of service
nvdosv