Vulnerability Details CVE-2023-26917
libyang from v2.0.164 to v2.1.30 was discovered to contain a NULL pointer dereference via the function lysp_stmt_validate_value at lys_parse_mem.c.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 31.6%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2023-26917
-
cpe:2.3:a:cesnet:libyang:2.0.164
-
cpe:2.3:a:cesnet:libyang:2.0.194
-
cpe:2.3:a:cesnet:libyang:2.0.231
-
cpe:2.3:a:cesnet:libyang:2.1.30
-
cpe:2.3:a:cesnet:libyang:2.1.4