Description
There is an illegal address access in ast.cpp of LibSass 3.4.5. A crafted input will lead to a remote denial of service attack.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=1470722
Related Vulnerabilities
CVE-2022-22965 Vulnerability in maven package org.springframework.boot:spring-boot-starter-webflux
CVE-2020-1941 Vulnerability in maven package org.apache.activemq:activemq-web-console
CVE-2020-8214 Vulnerability in npm package servey
CVE-2023-39532 Vulnerability in npm package ses
CVE-2020-13445 Vulnerability in maven package com.liferay:com.liferay.portal.template.velocity