This page lists publicly disclosed CVE vulnerabilities affecting clusterlabs libqb (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2023-39976 | log_blackbox.c in libqb before 2.0.8 allows a buffer overflow via long log messages because the header size is not considered. | [email protected] | 9.8 | 0.98% | 2023-08-08 | 2024-11-21 |
| CVE-2019-12779 | libqb before 1.0.5 allows local users to overwrite arbitrary files via a symlink attack, because it uses predictable filenames (under /dev/shm and /tmp) without O_EXCL. | [email protected] | 7.1 | 0.66% | 2019-06-07 | 2024-11-21 |