md_push_block_bytes in md4c.c in md4c 0.4.5 allows attackers to trigger use of uninitialized memory, and cause a denial of service (e.g., assertion failure) via a malformed Markdown document.
The product uses or accesses a resource that has not been initialized.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Md4c | Md4c_project | 0.4.5 (including) | 0.4.5 (including) |
Md4c | Ubuntu | groovy | * |
Md4c | Ubuntu | hirsute | * |
Md4c | Ubuntu | impish | * |
Md4c | Ubuntu | kinetic | * |
Md4c | Ubuntu | lunar | * |
Md4c | Ubuntu | mantic | * |
Md4c | Ubuntu | trusty | * |