Description
An invalid memory access flaw is present in libyang before v1.0-r1 in the function resolve_feature_value() when an if-feature statement is used inside a list key node, and the feature used is not defined. Applications that use libyang to parse untrusted input yang files may crash.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3572-1 | libyang security update |
EUVD |
EUVD-2019-10942 | An invalid memory access flaw is present in libyang before v1.0-r1 in the function resolve_feature_value() when an if-feature statement is used inside a list key node, and the feature used is not defined. Applications that use libyang to parse untrusted input yang files may crash. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T02:39:09.196Z
Reserved: 2020-01-22T00:00:00.000Z
Link: CVE-2019-20392
No data.
Status : Modified
Published: 2020-01-22T22:15:10.143
Modified: 2024-11-21T04:38:22.570
Link: CVE-2019-20392
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD