Vulnerabilities (CVE)

Filtered by vendor Rpm Subscribe
Filtered by product Libcomps
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-3817 1 Rpm 1 Libcomps 2023-12-10 6.8 MEDIUM 8.8 HIGH
A use-after-free flaw has been discovered in libcomps before version 0.1.10 in the way ObjMRTrees are merged. An attacker, who is able to make an application read a crafted comps XML file, may be able to crash the application or execute malicious code.