MGASA-2020-0117
Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 06 Mar 2020, 16:13
Last modified:16 Apr 2026, 04:26
Vulnerability Summary
Overall Risk (default)
minimal
0/100 CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
06 Mar 2020, 16:13
Published
Vulnerability first disclosed
16 Apr 2026, 04:26
Last Modified
Vulnerability information updated
Description
Updated libsolv packages fix security vulnerability Updated libsolv packages fix security vulnerability: An out-of-bounds read was discovered in libsolv when the last schema has a length that is less than the length of the input schema. A remote attacker may abuse this flaw to crash an application that uses libsolv (CVE-2019-20387).
Affected Systems
- mageia•libsolv
< 0.7.4-1.1.mga7