Related Vulnerabilities: CVE-2021-44575  

Two heap-overflow vulnerabilities exists in openSUSE libsolv through 13 Dec 2020 in the makeruledecisions function at src/solver.c: line 147 and 307.

Description

The MITRE CVE dictionary describes this issue as:

Two heap-overflow vulnerabilities exists in openSUSE libsolv through 13 Dec 2020 in the makeruledecisions function at src/solver.c: line 147 and 307.

Additional Information

  • Bugzilla 2056780: CVE-2021-44575 libsolv: Heap overflow
  • CWE-787: Out-of-bounds Write
  • FAQ: Frequently asked questions about CVE-2021-44575