Description
There is a stack consumption vulnerability in the Parser::advanceToNextToken function in parser.cpp in LibSass 3.4.5. A crafted input may lead to remote denial of service.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=1471786
Related Vulnerabilities
CVE-2021-36372 Vulnerability in maven package org.apache.ozone:ozone-common
CVE-2017-16096 Vulnerability in npm package serveryaozeyan
CVE-2019-10761 Vulnerability in npm package vm2
CVE-2020-14967 Vulnerability in maven package org.webjars.npm:jsrsasign
CVE-2020-36189 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind