FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

md4c -- DoS attack

Affected packages
md4c < 0.4.7

Details

VuXML ID f2b1da2e-6178-11ef-8a7d-b42e991fc52e
Discovery 2021-04-29
Entry 2024-08-23

cve@mitre.org reports:

md_analyze_line in md4c.c in md4c 0.4.7 allows attackers to trigger use of uninitialized memory, and cause a denial of service via a malformed Markdown document.

References

CVE Name CVE-2021-30027
URL https://nvd.nist.gov/vuln/detail/CVE-2021-30027