libyang is a YANG data modeling language library. Prior to SO 5.2.15, lyb_read_string() in src/parser_lyb.c contains an integer overflow that results in a heap buffer overflow when parsing a maliciously crafted LYB binary blob. An attacker who can supply LYB data to any libyang consumer (NETCONF server, sysrepo, etc.) can trigger a crash or potential heap corruption. This vulnerability is fixed in SO 5.2.15.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade libyang | Jun 9, 2026 | Jun 8, 2026 |
| Oracle_linux | — | Upgrade libyang | Jun 12, 2026 | May 14, 2026 |
| Redhat_linux | — | Upgrade libyang-develUpgrade libyang-cpp-debuginfoUpgrade libyangUpgrade libyang-tools-debuginfoUpgrade python3-libyang-debuginfoUpgrade libyang-devel-docUpgrade libyang-debugsourceUpgrade libyang-debuginfo | Jun 10, 2026 | May 14, 2026 |
| Rocky_linux | — | Upgrade libyang-devel-docUpgrade libyang-develUpgrade libyang-debugsourceUpgrade libyangUpgrade libyang-debuginfo | Jun 17, 2026 | Jun 13, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub