CVE-2018-19826
03.12.2018, 19:29
In inspect.cpp in LibSass 3.5.5, a high memory footprint caused by an endless loop (containing a Sass::Inspect::operator()(Sass::String_Quoted*) stack frame) may cause a Denial of Service via crafted sass input files with stray '&' or '/' characters. NOTE: Upstream comments indicate this issue is closed as "won't fix" and "works as intended" by design
Vendor | Product | Version |
---|---|---|
sass-lang | libsass | 3.5.5 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration