CVE-2021-26813
03.03.2021, 16:15
markdown2 >=1.0.1.18, fixed in 2.4.0, is affected by a regular expression denial of service vulnerability. If an attacker provides a malicious string, it can make markdown2 processing difficult or delayed for an extended period of time.Enginsight
Vendor | Product | Version |
---|---|---|
markdown2_project | markdown2 | 1.0.1.18 ≤ 𝑥 < 2.4.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References