PT-2022-12171 · Libsolv · Libsolv

Published

2022-02-21

·

Updated

2022-06-13

·

CVE-2021-44576

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions libsolv versions prior to 13 Dec 2020
Description Two memory vulnerabilities exist in the resolve weak function at src/solver.c, specifically at lines 2222 and 2249.
Recommendations For versions prior to 13 Dec 2020, update to a version released after 13 Dec 2020 to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2021-44576
OESA-2022-1569

Affected Products

Libsolv