Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-19797

Опубликовано: 03 дек. 2018
Источник: nvd
CVSS3: 6.5
CVSS2: 4.3
EPSS Низкий

Описание

In LibSass 3.5.5, a NULL Pointer Dereference in the function Sass::Selector_List::populate_extends in SharedPtr.hpp (used by ast.cpp and ast_selectors.cpp) may cause a Denial of Service (application crash) via a crafted sass input file.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:sass-lang:libsass:3.5.5:*:*:*:*:*:*:*

EPSS

Процентиль: 48%
0.0025
Низкий

6.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 7 лет назад

In LibSass 3.5.5, a NULL Pointer Dereference in the function Sass::Selector_List::populate_extends in SharedPtr.hpp (used by ast.cpp and ast_selectors.cpp) may cause a Denial of Service (application crash) via a crafted sass input file.

msrc
2 месяца назад

In LibSass 3.5.5, a NULL Pointer Dereference in the function Sass::Selector_List::populate_extends in SharedPtr.hpp (used by ast.cpp and ast_selectors.cpp) may cause a Denial of Service (application crash) via a crafted sass input file.

CVSS3: 6.5
debian
около 7 лет назад

In LibSass 3.5.5, a NULL Pointer Dereference in the function Sass::Sel ...

CVSS3: 6.5
github
больше 3 лет назад

In LibSass 3.5.5, a NULL Pointer Dereference in the function Sass::Selector_List::populate_extends in SharedPtr.hpp (used by ast.cpp and ast_selectors.cpp) may cause a Denial of Service (application crash) via a crafted sass input file.

suse-cvrf
больше 6 лет назад

Security update for libsass

EPSS

Процентиль: 48%
0.0025
Низкий

6.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-476