Описание
There is an illegal address access in the Eval::operator function in eval.cpp in LibSass 3.4.5. A crafted input will lead to a remote denial of service.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| libsass | fixed | 3.5.4-1 | package | |
| libsass | no-dsa | stretch | package |
Примечания
https://github.com/sass/libsass/issues/2446
https://github.com/sass/libsass/commit/946ef4995bee1b19de581b69850e1eb841c06b12
EPSS
Процентиль: 60%
0.00401
Низкий
Связанные уязвимости
CVSS3: 7.5
ubuntu
больше 8 лет назад
There is an illegal address access in the Eval::operator function in eval.cpp in LibSass 3.4.5. A crafted input will lead to a remote denial of service.
CVSS3: 7.5
nvd
больше 8 лет назад
There is an illegal address access in the Eval::operator function in eval.cpp in LibSass 3.4.5. A crafted input will lead to a remote denial of service.
CVSS3: 7.5
github
больше 3 лет назад
There is an illegal address access in the Eval::operator function in eval.cpp in LibSass 3.4.5. A crafted input will lead to a remote denial of service.
EPSS
Процентиль: 60%
0.00401
Низкий