CVE-2020-26148

unknown
Published โ€” ยท Modified โ€”
CVSS v3
โ€”
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
โ€”

Description

md_push_block_bytes in md4c.c in md4c 0.4.5 allows attackers to trigger use of uninitialized memory, and cause a denial of service (e.g., assertion failure) via a malformed Markdown document.

Predictions

Exploit likelihood
20%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Debian Security Tracker ยท View original โ†— ยท DFSG

CVE-2020-26148 NameCVE-2020-26148 Descriptionmd_push_block_bytes in md4c.c in md4c 0.4.5 allows attackers to trigger use of uninitialized memory, and cause a denial of service (e.g., assertion failure) via a malformed Markdown document. SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)โ€ฆ

CVE-2020-26148

NameCVE-2020-26148
Descriptionmd_push_block_bytes in md4c.c in md4c 0.4.5 allows attackers to trigger use of uninitialized memory, and cause a denial of service (e.g., assertion failure) via a malformed Markdown document.
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs971396

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
md4c (PTS)bullseye0.4.7-2fixed
bookworm0.4.8-1fixed
trixie0.5.2-2fixed
forky, sid0.5.3-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
md4csource(unstable)0.4.5-2971396

Notes

https://github.com/mity/md4c/issues/130
https://github.com/mity/md4c/commit/22ca89a3008966c4316d6b0a158b1a49f9038df0

Home - Debian Security - Source (Git)

Apply commands

text fix
Notes
https://github.com/mity/md4c/issues/130https://github.com/mity/md4c/commit/22ca89a3008966c4316d6b0a158b1a49f9038df0

OS impact

OSVersionStatusFixed in
debian debianbookwormfixed0.4.5-2
debian debianbullseyefixed0.4.5-2
debian debianforkyfixed0.4.5-2
debian debiansidfixed0.4.5-2
debian debiantrixiefixed0.4.5-2

References

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.