REDHAT-BUG-1665538: Low severity centos libsolv vulnerability
A vulnerability was found in libsolv through 0.7.2. There is an illegal address access at src/pool.h (function poolwhatprovides) in libsolv.a that will cause a denial of service.
References: https://bugzilla.redhat.com/showbug.cgi?id=1652604
Upstream Patch: https://github.com/openSUSE/libsolv/pull/291
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1665538?
The severity of REDHAT-BUG-1665538 is categorized as a denial of service vulnerability.
What software versions are affected by REDHAT-BUG-1665538?
The affected software version for REDHAT-BUG-1665538 is libsolv up to and including version 0.7.2.
How do I fix REDHAT-BUG-1665538?
To fix REDHAT-BUG-1665538, upgrade libsolv to the latest version that addresses the vulnerability.
What impact does REDHAT-BUG-1665538 have on my system?
The impact of REDHAT-BUG-1665538 can lead to a denial of service, causing the affected application to crash or become unresponsive.
Is there a workaround for REDHAT-BUG-1665538?
Currently, there is no known workaround for REDHAT-BUG-1665538 other than applying relevant updates.