CVE-2019-20387

repodata_schema2id in repodata.c in libsolv before 0.7.6 has a heap-based buffer over-read via a last schema whose length is less than the length of the input schema.
Configurations

Configuration 1 (hide)

cpe:2.3:a:opensuse:libsolv:*:*:*:*:*:*:*:*

Information

Published : 2020-01-21 23:15

Updated : 2020-01-30 21:15


NVD link : CVE-2019-20387

Mitre link : CVE-2019-20387


JSON object : View

Products Affected

opensuse

  • libsolv
CWE
CWE-125

Out-of-bounds Read