PT-2021-23588 · Linux Mint+1 · Linuxmint+1

Simonferquel

·

Published

2021-04-14

·

Updated

2025-04-11

·

CVE-2021-4235

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description The issue is related to unbounded alias chasing in YAML files. A maliciously crafted YAML file can cause the system to consume significant system resources, potentially leading to a denial of service if the system is parsing user input.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Related Identifiers

AZL-43447
AZL-43642
AZL-43918
AZL-44229
AZL-45237
AZL-45360
CVE-2021-4235
DLA-3479-1
GHSA-R88R-GMRH-7J83
GO-2021-0061
RHSA-2022:7398
USN-6287-1

Affected Products

Linuxmint
Ubuntu