CVE-2018-20534
CVE-2018-20534
Vexday Risk Score
3Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS —EPSS 2.3%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Ciclo de vida
28 dez 2018Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will cause a denial of service. NOTE: third parties dispute this issue stating that the issue affects the test suite and not the underlying library. It cannot be exploited in any real-world application
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00057.htmlhttps://access.redhat.com/errata/RHSA-2019:2290https://access.redhat.com/errata/RHSA-2019:3583https://bugzilla.redhat.com/show_bug.cgi?id=1652604https://bugzilla.suse.com/show_bug.cgi?id=1120631https://github.com/openSUSE/libsolv/pull/291https://usn.ubuntu.com/3916-1/