UBUNTU-CVE-2018-20534
Dashboard / Vulnerabilities / UBUNTU-CVE-2018-20534
UBUNTU-CVE-2018-20534
Summary:
Details: There is an illegal address access at ext/testcase.c in libsolv.a in libsolv through 0.7.2 that will cause a denial of service. NOTE: third parties dispute this issue stating that the issue affects the test suite and not the underlying library. It cannot be exploited in any real-world application
References: https://ubuntu.com/security/CVE-2018-20534, https://bugzilla.redhat.com/show_bug.cgi?id=1652604, https://github.com/openSUSE/libsolv/pull/291, https://ubuntu.com/security/notices/USN-3916-1, https://ubuntu.com/security/notices/USN-4851-1, https://www.cve.org/CVERecord?id=CVE-2018-20534
Affected packages
Package
Name: libsolv
Purl: pkg:deb/ubuntu/[email protected]~esm1?arch=source&distro=esm-apps/xenial
Affected ranges
Type: ECOSYSTEM
Events:
