PT-2018-10652 · Md4C · Md4C

Chijinz

·

Published

2018-05-29

·

Updated

2020-08-24

·

CVE-2018-11545

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions md4c version 0.2.5
Description The issue is related to a heap-based buffer overflow in the md merge lines function. This overflow occurs because the md is link label function mishandles link labels composed solely of backslash escapes.
Recommendations For md4c version 0.2.5, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-11545

Affected Products

Md4C