PT-2020-16226 · Peg · Peg-Markdown
Fcambus
·
Published
2020-09-23
·
Updated
2024-08-04
·
CVE-2020-25821
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
peg-markdown version 0.4.14
Description
The issue is related to a NULL pointer dereference in the
process raw blocks function located in markdown lib.c. This problem only affects products that are no longer supported by the maintainer.Recommendations
For peg-markdown version 0.4.14, consider restricting access to the
process raw blocks function in markdown lib.c as a temporary workaround until a more permanent solution can be applied. However, since the products are no longer supported by the maintainer, at the moment, there is no information about a newer version that contains a fix for this issue.Exploit
Fix
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Peg-Markdown