Candidate: CVE-2021-33929 PublicDate: 2021-09-02 15:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-33929 https://github.com/openSUSE/libsolv/issues/417 https://github.com/openSUSE/libsolv/commit/0077ef29eb46d2e1df2f230fc95a1d9748d49dec (0.7.17) Description: Buffer overflow vulnerability in function pool_disabled_solvable in src/repo.h in libsolv before 0.7.17 allows attackers to cause a Denial of Service. Ubuntu-Description: Notes: Mitigation: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] Patches_libsolv: upstream_libsolv: released (0.7.17-1) trusty_libsolv: ignored (out of standard support) trusty/esm_libsolv: DNE xenial_libsolv: ignored (out of standard support) bionic_libsolv: needed focal_libsolv: needed hirsute_libsolv: not-affected (0.7.17-1) impish_libsolv: not-affected jammy_libsolv: not-affected devel_libsolv: not-affected