CVE-2021-44574

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-3200 Reason: This candidate is a duplicate of CVE-2021-3200. Notes: All CVE users should reference CVE-2021-3200 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.
CVSS

No CVSS.

References

No reference.

Configurations

No configuration.

History

13 Jun 2022, 17:15

Type Values Removed Values Added
CWE CWE-787
References
  • {'url': 'https://github.com/yangjiageng/PoC/blob/master/libsolv-PoCs/resolve_jobrules-1599', 'name': 'https://github.com/yangjiageng/PoC/blob/master/libsolv-PoCs/resolve_jobrules-1599', 'tags': ['Exploit', 'Third Party Advisory'], 'refsource': 'MISC'}
  • {'url': 'https://github.com/openSUSE/libsolv/issues/429', 'name': 'https://github.com/openSUSE/libsolv/issues/429', 'tags': ['Exploit', 'Issue Tracking', 'Third Party Advisory'], 'refsource': 'MISC'}
  • {'url': 'https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XVLRHB6CUX3SHYOIGVUQNWAOW5JYANWH/', 'name': 'FEDORA-2022-f8921a3891', 'tags': ['Mailing List', 'Third Party Advisory'], 'refsource': 'FEDORA'}
CVSS v2 : 4.3
v3 : 6.5
v2 : unknown
v3 : unknown
Summary A heap-overflow vulnerability exists in openSUSE libsolv through 13 Dec 2020 in the resolve_jobrules function at src/solver.c at line 1599. ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-3200 Reason: This candidate is a duplicate of CVE-2021-3200. Notes: All CVE users should reference CVE-2021-3200 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.
CPE cpe:2.3:a:opensuse:libsolv:*:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*

01 Mar 2022, 23:12

Type Values Removed Values Added
References (MISC) https://github.com/yangjiageng/PoC/blob/master/libsolv-PoCs/resolve_jobrules-1599 - (MISC) https://github.com/yangjiageng/PoC/blob/master/libsolv-PoCs/resolve_jobrules-1599 - Exploit, Third Party Advisory
References (MISC) https://github.com/openSUSE/libsolv/issues/429 - (MISC) https://github.com/openSUSE/libsolv/issues/429 - Exploit, Issue Tracking, Third Party Advisory
References (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XVLRHB6CUX3SHYOIGVUQNWAOW5JYANWH/ - (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XVLRHB6CUX3SHYOIGVUQNWAOW5JYANWH/ - Mailing List, Third Party Advisory
CWE CWE-787
CPE cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
cpe:2.3:a:opensuse:libsolv:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 4.3
v3 : 6.5

01 Mar 2022, 18:15

Type Values Removed Values Added
References
  • (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XVLRHB6CUX3SHYOIGVUQNWAOW5JYANWH/ -

21 Feb 2022, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-02-21 20:15

Updated : 2024-02-04 22:29


NVD link : CVE-2021-44574

Mitre link : CVE-2021-44574

CVE.ORG link : CVE-2021-44574


JSON object : View

Products Affected

No product.

CWE

No CWE.