CVE detail
CVE-2026-48864
A flaw was found in libsolv. This heap buffer overflow occurs during the decompression of attacker-controlled compressed data within `.solv` files due to insufficient input validation. An attacker can provide a specially crafted `.solv` file, which, when processed by a vulnerable application, can lead to out-of-bounds memory access. This could result in information disclosure, alteration of program execution, or a denial of service.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 23.0 · diversity 15.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
9 source links · newest first
- CVE-2026-48864 Libsolv: heap buffer overflow in libsolv repopagestore via unchecked decompression of malicious .solv page dataMicrosoft MSRC
Information published.
vendormsrc.microsoft.comMay 31, 2026, 8:02 AM - https://access.redhat.com/errata/RHSA-2026:46836access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 26, 2026, 5:16 PM - https://access.redhat.com/errata/RHSA-2026:44481access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 26, 2026, 5:16 PM - https://bugzilla.redhat.com/show_bug.cgi?id=2460425bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comMay 26, 2026, 5:16 PM - https://access.redhat.com/security/cve/CVE-2026-48864access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 26, 2026, 5:16 PM - https://access.redhat.com/errata/RHSA-2026:39315access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 26, 2026, 5:16 PM - https://access.redhat.com/errata/RHSA-2026:36730access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 26, 2026, 5:16 PM - https://access.redhat.com/errata/RHSA-2026:28236access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 26, 2026, 5:16 PM - https://access.redhat.com/errata/RHSA-2026:21333access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comMay 26, 2026, 5:16 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-9149CVSS 6.5 · Medium
A flaw was found in libsolv. This heap buffer overflow vulnerability occurs when a victim processes a specially crafted `.solv` file containing negative size values in the `repo_a…
- CVE-2026-9150CVSS 6.5 · Medium
A flaw was found in libsolv. This stack-based buffer overflow vulnerability occurs in libsolv's Debian metadata parser when processing specially crafted Debian repository metadata…
- CVE-2025-7519CVSS 6.7 · Medium
A flaw was found in polkit. When processing an XML policy with 32 or more nested elements in depth, an out-of-bounds write can be triggered. This issue can lead to a crash or othe…
- CVE-2025-6021CVSS 7.5 · High
A flaw was found in libxml2's xmlBuildQName function, where integer overflows in buffer size calculations can lead to a stack-based buffer overflow. This issue can result in memor…
- CVE-2025-5917CVSS 2.8 · Low
A vulnerability has been identified in the libarchive library. This flaw involves an 'off-by-one' miscalculation when handling prefixes and suffixes for file names. This can lead…
- CVE-2024-45782CVSS 7.8 · High
A flaw was found in the HFS filesystem. When reading an HFS volume's name at grub_fs_mount(), the HFS filesystem driver performs a strcpy() using the user-provided volume name as…