CVE-2018-20542
Severity CVSS v4.0:
Pending analysis
Type:
CWE-119
Buffer Errors
Publication date:
28/12/2018
Last modified:
17/06/2026
Description
There is a heap-based buffer-overflow at generator_spgemm_csc_reader.c (function libxsmm_sparse_csc_reader) in LIBXSMM 1.10, a different vulnerability than CVE-2018-20541 (which is in a different part of the source code and is seen at a different address).
Impact
Base Score 3.x
8.80
Severity 3.x
HIGH
Base Score 2.0
6.80
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:libxsmm_project:libxsmm:1.10:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://bugzilla.redhat.com/show_bug.cgi?id=1652633
- https://bugzilla.redhat.com/show_bug.cgi?id=1652635
- https://github.com/hfp/libxsmm/commit/151481489192e6d1997f8bde52c5c425ea41741d
- https://github.com/hfp/libxsmm/issues/287
- https://bugzilla.redhat.com/show_bug.cgi?id=1652633
- https://bugzilla.redhat.com/show_bug.cgi?id=1652635
- https://github.com/hfp/libxsmm/commit/151481489192e6d1997f8bde52c5c425ea41741d
- https://github.com/hfp/libxsmm/issues/287



