Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 28 Aug 2024 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-787 | |
| CPEs | ||
| Vendors & Products |
Pyyaml
Pyyaml libyaml |
|
| References |
|
|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Wed, 28 Aug 2024 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | libyaml v0.2.5 is vulnerable to Buffer Overflow. Affected by this issue is the function yaml_emitter_emit of the file /src/libyaml/src/emitter.c. The manipulation leads to a double-free. NOTE: this is disputed by the supplier because the discoverer's sample C code is incorrect: it does not call all of the required _initialize functions that are described in the LibYAML documentation. | DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none. |
Wed, 28 Aug 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 28 Aug 2024 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | libyaml v0.2.5 is vulnerable to Buffer Overflow. Affected by this issue is the function yaml_emitter_emit of the file /src/libyaml/src/emitter.c. The manipulation leads to a double-free. | libyaml v0.2.5 is vulnerable to Buffer Overflow. Affected by this issue is the function yaml_emitter_emit of the file /src/libyaml/src/emitter.c. The manipulation leads to a double-free. NOTE: this is disputed by the supplier because the discoverer's sample C code is incorrect: it does not call all of the required _initialize functions that are described in the LibYAML documentation. |
| References |
|
Wed, 28 Aug 2024 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 06 Aug 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Pyyaml
Pyyaml libyaml |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:pyyaml:libyaml:0.2.5:*:*:*:*:*:*:* | |
| Vendors & Products |
Pyyaml
Pyyaml libyaml |
|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Subscriptions
No data.
Status: REJECTED
Assigner: mitre
Published:
Updated: 2024-08-28T15:38:17.799Z
Reserved: 2024-05-17T00:00:00.000Z
Link: CVE-2024-35326
Updated:
Status : Rejected
Published: 2024-06-13T17:15:50.490
Modified: 2024-08-28T16:15:08.740
Link: CVE-2024-35326
OpenCVE Enrichment
No data.