In function extgetplugin() in libyang <= v1.0.225, it doesn't check whether the value of revision is NULL. If revision is NULL, the operation of strcmp(revision, ext_plugins[u].revision) will lead to a crash.
{ "availability": "No subscription required", "ubuntu_priority": "low", "binaries": [ { "binary_version": "1.0.225-1.1", "binary_name": "libyang-cpp-dev" }, { "binary_version": "1.0.225-1.1", "binary_name": "libyang-cpp1" }, { "binary_version": "1.0.225-1.1", "binary_name": "libyang-cpp1-dbgsym" }, { "binary_version": "1.0.225-1.1", "binary_name": "libyang-dev" }, { "binary_version": "1.0.225-1.1", "binary_name": "libyang-tools" }, { "binary_version": "1.0.225-1.1", "binary_name": "libyang-tools-dbgsym" }, { "binary_version": "1.0.225-1.1", "binary_name": "libyang1" }, { "binary_version": "1.0.225-1.1", "binary_name": "libyang1-dbgsym" }, { "binary_version": "1.0.225-1.1", "binary_name": "yang-tools" } ] }