Description
There is a stack consumption vulnerability in the Parser::advanceToNextToken function in parser.cpp in LibSass 3.4.5. A crafted input may lead to remote denial of service.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=1471786
Related Vulnerabilities
CVE-2023-32007 Vulnerability in maven package org.apache.spark:spark-core_2.12
CVE-2020-35199 Vulnerability in maven package org.igniterealtime.openfire.plugins:bookmarks
CVE-2020-28283 Vulnerability in npm package libnested
CVE-2019-5427 Vulnerability in maven package com.mchange:c3p0
CVE-2020-8237 Vulnerability in maven package org.webjars.bower:json-bigint