Known Vulnerabilities for products from Md4c Project
Listed below are 8 of the newest known vulnerabilities associated with the vendor "Md4c Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-30027 json | md_analyze_line in md4c.c in md4c 0.4.7 allows attackers to trigger use of uninitialized memory, and cause a denial of servic... | 5.5 - MEDIUM | 2021-04-29 | 2021-05-09 |
| CVE-2020-26148 json | md_push_block_bytes in md4c.c in md4c 0.4.5 allows attackers to trigger use of uninitialized memory, and cause a denial of se... | 7.5 - HIGH | 2020-09-30 | 2020-10-09 |
| CVE-2018-12112 json | md_build_attribute in md4c.c in md4c 0.2.6 allows remote attackers to cause a denial of service (Segmentation fault and appli... | 7.8 - HIGH | 2018-06-11 | 2018-07-27 |
| CVE-2018-12102 json | md4c 0.2.6 has a NULL pointer dereference in the function md_process_line in md4c.c, related to ctx->current_block. | 5.5 - MEDIUM | 2018-06-11 | 2018-08-01 |
| CVE-2018-11547 json | md_is_link_reference_definition_helper in md4c 0.2.5 has a heap-based buffer over-read because md_is_link_label mishandles lo... | 9.8 - CRITICAL | 2018-05-29 | 2018-06-29 |
| CVE-2018-11546 json | md4c 0.2.5 has a heap-based buffer over-read because md_is_named_entity_contents has an off-by-one error. | 9.8 - CRITICAL | 2018-05-29 | 2018-06-29 |
| CVE-2018-11545 json | md4c 0.2.5 has a heap-based buffer overflow in md_merge_lines because md_is_link_label mishandles the case of a link label co... | 9.8 - CRITICAL | 2018-05-29 | 2020-08-24 |
| CVE-2018-11536 json | md4c before 0.2.5 has a heap-based buffer overflow because md_split_simple_pairing_mark mishandles splits. | 9.8 - CRITICAL | 2018-05-29 | 2020-08-24 |
Known software with vulnerabilities from Md4c Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Md4c Project | Md4c | 0.2.0 |