CVE-2018-11468

MEDIUM5.5EPSS 0.52%

discount - security update

發布日:2018/5/25修改日:2026/3/9
也稱為:DSA-4293-1DEBIAN-CVE-2018-11468

描述

The __mkd_trim_line function in mkdio.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file, as demonstrated by mkd2html.

受影響套件(3)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM5.5CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

參考連結(1)