Fixed In Version: libyang 1.0-r1
An invalid memory access flaw was discovered in libyang in the function resolve_feature_value() when an if-feature statement is used inside a list key node and the feature used is not defined. Applications that use libyang to process untrusted input YANG files may crash.
This was actually fixed in RHEL-8.4.0 as part of the libyang rebase in https://access.redhat.com/errata/RHEA-2021:1906 .

