Lucene search

K
osvGoogleOSV:CVE-2021-28903
HistoryMay 20, 2021 - 7:15 p.m.

CVE-2021-28903

2021-05-2019:15:07
Google
osv.dev
6
libyang
stack overflow
denial of service
lyxml_parse_mem
crash

AI Score

7

Confidence

High

EPSS

0.001

Percentile

45.7%

A stack overflow in libyang <= v1.0.225 can cause a denial of service through function lyxml_parse_mem(). lyxml_parse_elem() function will be called recursively, which will consume stack space and lead to crash.

AI Score

7

Confidence

High

EPSS

0.001

Percentile

45.7%