Vulnerabilities > CVE-2020-36402 - Out-of-bounds Write vulnerability in Soliditylang Solidity 0.7.5

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
soliditylang
CWE-787

Summary

Solidity 0.7.5 has a stack-use-after-return issue in smtutil::CHCSmtLib2Interface::querySolver. NOTE: c39a5e2b7a3fabbf687f53a2823fc087be6c1a7e is cited in the OSV "fixed" field but does not have a code change.

Vulnerable Configurations

Part Description Count
Application
Soliditylang
1
OS
Linux
1

Common Weakness Enumeration (CWE)