CVE-2020-26148

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
30/09/2020
Last modified:
09/10/2020

Description

md_push_block_bytes in md4c.c in md4c 0.4.5 allows attackers to trigger use of uninitialized memory, and cause a denial of service (e.g., assertion failure) via a malformed Markdown document.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:md4c_project:md4c:0.4.5:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools