First published: Sun Dec 13 2020(Updated: )
A flaw was found in libsolv. A buffer overflow vulnerability in the prune_to_recommend function allows attackers to cause a denial of service. The highest threat from this vulnerability is to system availability.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/libsolv | <0:0.7.16-3.el8_4 | 0:0.7.16-3.el8_4 |
redhat/libsolv | <0:0.7.22-1.el7 | 0:0.7.22-1.el7 |
redhat/libsolv | <0:0.7.22-1.el8 | 0:0.7.22-1.el8 |
Opensuse Libsolv | <=0.7.17 | |
IBM QRadar SIEM | <=7.5.0 GA | |
IBM QRadar SIEM | <=7.4.3 GA - 7.4.3 FP4 | |
IBM QRadar SIEM | <=7.3.3 GA - 7.3.3 FP10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2021-33938.
CVE-2021-33938 has a severity rating of high (7).
The affected software of CVE-2021-33938 includes libsolv 0.7.16-3.el8_4, libsolv 0.7.22-1.el7, and libsolv 0.7.22-1.el8.
CVE-2021-33938 can be exploited by an attacker to cause a denial of service.
Yes, there are remedies available for CVE-2021-33938 depending on the affected software. Please refer to the provided references for more information.