← Vulnerability feed

Vulnerability record · CVE-2026-48864 · published 26 May 2026

CVE-2026-48864: Opensuse libsolv out-of-bounds write vulnerability

Opensuse · Libsolv

A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within `.solv` files due to insufficient input validation. An attacker can provide a specially crafted `.solv` file, which, when processed by a vulnerable application, can lead to out-of-bounds memory access. This could result in information disclosure, alteration of program execution, or a denial of service.

7.8 CVSS 3.1 High EPSS 0.26% · top 83.8% CWE-787 · Out-of-bounds write
7.8CVSS 3.1 base score
0.26%EPSS exploitation probability, 30 days
NoNot in CISA KEV
6Affected product versions listed by NVD
33References, 1 tagged exploit
28 Sep 2026Last modified by NVD

Description

A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within `.solv` files due to insufficient input validation. An attacker can provide a specially crafted `.solv` file, which, when processed by a vulnerable application, can lead to out-of-bounds memory access. This could result in information disclosure, alteration of program execution, or a denial of service.

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected products

6 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
https://access.redhat.com/errata/RHSA-2026:21333 Third Party Advisory
https://access.redhat.com/errata/RHSA-2026:28236
https://access.redhat.com/errata/RHSA-2026:36730
https://access.redhat.com/errata/RHSA-2026:39315
https://access.redhat.com/errata/RHSA-2026:44481
https://access.redhat.com/errata/RHSA-2026:46836
https://access.redhat.com/errata/RHSA-2026:48811
https://access.redhat.com/errata/RHSA-2026:48813
https://access.redhat.com/errata/RHSA-2026:48814
https://access.redhat.com/errata/RHSA-2026:48815
https://access.redhat.com/errata/RHSA-2026:48816
https://access.redhat.com/errata/RHSA-2026:48817
https://access.redhat.com/errata/RHSA-2026:48818
https://access.redhat.com/errata/RHSA-2026:49775
https://access.redhat.com/errata/RHSA-2026:50223
https://access.redhat.com/errata/RHSA-2026:53371
https://access.redhat.com/errata/RHSA-2026:56786
https://access.redhat.com/errata/RHSA-2026:56853
https://access.redhat.com/errata/RHSA-2026:56911
https://access.redhat.com/errata/RHSA-2026:57402
https://access.redhat.com/errata/RHSA-2026:57483
https://access.redhat.com/errata/RHSA-2026:58981
https://access.redhat.com/errata/RHSA-2026:59831
https://access.redhat.com/errata/RHSA-2026:60019
https://access.redhat.com/errata/RHSA-2026:65839
https://access.redhat.com/errata/RHSA-2026:72394
https://access.redhat.com/errata/RHSA-2026:72395
https://access.redhat.com/errata/RHSA-2026:72399
https://access.redhat.com/errata/RHSA-2026:72470
https://access.redhat.com/errata/RHSA-2026:72475
https://access.redhat.com/errata/RHSA-2026:72476
https://access.redhat.com/security/cve/CVE-2026-48864 Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=2460425 ExploitIssue TrackingThird Party Advisory

Track CVE-2026-48864 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2019-7609Kibana Timelion visualizer code injection enables remote code executionKibana before 5.6.15 and 6.6.1 contains an arbitrary code execution flaw in the Timelion visualizer. An attacker who can reach the Timelion applicati…KEVEPSS 95%analysed9.9CVE-2019-1003029Jenkins Script Security Plugin sandbox bypass allows code executionThe Jenkins Script Security Plugin 1.53 and earlier fails to properly enforce its Groovy sandbox in GroovySandbox.java and SecureGroovyScript.java, l…KEVEPSS 74%analysed9.9CVE-2019-1003030Jenkins Pipeline Groovy Plugin sandbox bypass allows arbitrary code executionThe Jenkins Pipeline: Groovy Plugin (2.63 and earlier) contains a sandbox bypass in CpsGroovyShell.java. Attackers who can control pipeline scripts c…KEVEPSS 97%analysed9.8CVE-2019-11043PHP-FPM buffer overflow enables remote code executionPHP-FPM in certain configurations writes past allocated buffers into FCGI protocol data space, an out-of-bounds write (CWE-787, CWE-120). It affects …KEVEPSS 100%analysed9.8CVE-2018-1000861Jenkins Stapler framework URL routing allows remote code executionThe Stapler web framework in Jenkins 2.153 and earlier and LTS 2.138.3 and earlier lets attackers invoke unintended Java methods by requesting crafte…KEVEPSS 98%analysed9.8CVE-2018-14667RichFaces Framework EL injection enables unauthenticated remote code executionRichFaces Framework 3.X through 3.3.4 is vulnerable to Expression Language injection through the UserResource resource. A remote, unauthenticated att…KEVEPSS 74%analysed9.8CVE-2016-3427Oracle Java SE JMX Improper Access Control VulnerabilityCVE-2016-3427 is an unspecified vulnerability in Oracle Java SE 6u113, 7u99, 8u77, Java SE Embedded 8u77, and JRockit R28.3.9, reached through vector…KEVEPSS 92%analysed9.8CVE-2015-2590Oracle Java SE Libraries flaw allows remote code executionCVE-2015-2590 is an unspecified vulnerability in the Libraries component of Oracle Java SE 6u95, 7u80, 8u45 and Java SE Embedded 7u75, 8u33. The reco…KEVEPSS 25%analysed

Source: NIST National Vulnerability Database (record CVE-2026-48864), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.