Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22337
HistoryJan 22, 2020 - 1:43 p.m.

Buffer Over-read

2020-01-2213:43:07
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

EPSS

0.002

Percentile

55.8%

libsolv.so is susceptible to buffer over-read. The attack exists when the length of last schema in data->schemadata is less than the length of input schema, leading to a buffer overflow in repodata_schema2id in repodata.c.