Описание
In LibSass 3.5-stable, there is an illegal address access at Sass::Parser::parse_css_variable_value_token that will lead to a DoS attack.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 8 | libsass | Not affected |
Показывать по
10
Дополнительная информация
Статус:
Low
Дефект:
CWE-674
https://bugzilla.redhat.com/show_bug.cgi?id=1652070libsass: illegal address access at Sass::Parser::parse_css_variable_value_token
EPSS
Процентиль: 47%
0.00238
Низкий
3.3 Low
CVSS3
Связанные уязвимости
CVSS3: 6.5
ubuntu
около 7 лет назад
In LibSass 3.5-stable, there is an illegal address access at Sass::Parser::parse_css_variable_value_token that will lead to a DoS attack.
CVSS3: 6.5
nvd
около 7 лет назад
In LibSass 3.5-stable, there is an illegal address access at Sass::Parser::parse_css_variable_value_token that will lead to a DoS attack.
CVSS3: 6.5
debian
около 7 лет назад
In LibSass 3.5-stable, there is an illegal address access at Sass::Par ...
CVSS3: 6.5
github
больше 3 лет назад
In LibSass 3.5-stable, there is an illegal address access at Sass::Parser::parse_css_variable_value_token that will lead to a DoS attack.
EPSS
Процентиль: 47%
0.00238
Низкий
3.3 Low
CVSS3