Candidate: CVE-2019-20387 PublicDate: 2020-01-21 23:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-20387 https://github.com/openSUSE/libsolv/commit/fdb9c9c03508990e4583046b590c30d958f272da (0.7.6) https://github.com/openSUSE/libsolv/commit/fdb9c9c03508990e4583046b590c30d958f272da https://github.com/openSUSE/libsolv/compare/0.7.5...0.7.6 https://lists.debian.org/debian-lts-announce/2020/01/msg00034.html Description: repodata_schema2id in repodata.c in libsolv before 0.7.6 has a heap-based buffer over-read via a last schema whose length is less than the length of the input schema. Ubuntu-Description: Notes: Mitigation: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=949611 Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] Patches_libsolv: upstream_libsolv: released (0.6.36-2) precise/esm_libsolv: DNE trusty_libsolv: ignored (out of standard support) trusty/esm_libsolv: DNE xenial_libsolv: ignored (end of standard support, was needed) bionic_libsolv: needed eoan_libsolv: ignored (reached end-of-life) focal_libsolv: not-affected (0.6.36-2) groovy_libsolv: not-affected (0.6.36-2) hirsute_libsolv: not-affected (0.6.36-2) impish_libsolv: not-affected (0.6.36-2) jammy_libsolv: not-affected (0.6.36-2) devel_libsolv: not-affected (0.6.36-2)