PT-2026-43313 · Red Hat · Red Hat Enterprise Linux 10+7

Found By

·

Published

2026-05-26

·

Updated

2026-05-26

·

CVE-2026-48864

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within .solv files due to insufficient input validation. An attacker can provide a specially crafted .solv file, which, when processed by a vulnerable application, can lead to out-of-bounds memory access. This could result in information disclosure, alteration of program execution, or a denial of service.

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2026-48864

Affected Products

Red Hat Enterprise Linux 10
Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 8
Red Hat Enterprise Linux 9
Red Hat Hardened Images
Red Hat Openshift Container Platform 4
Red Hat Satellite 6
Red Hat Update Infrastructure 4 For Cloud Providers