CVE-2023-37463

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/07/2023
Last modified:
25/07/2023

Description

cmark-gfm is an extended version of the C reference implementation of CommonMark, a rationalized version of Markdown syntax with a spec. Three polynomial time complexity issues in cmark-gfm may lead to unbounded resource exhaustion and subsequent denial of service. These vulnerabilities have been patched in 0.29.0.gfm.12.<br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:github:cmark-gfm:*:*:*:*:*:*:*:* 0.29.0.gfm.12 (excluding)