Description
LibSass before 3.6.3 allows a heap-based buffer over-read in Sass::weaveParents in ast_sel_weave.cpp.
Remediation
References
https://github.com/sass/libsass/issues/2999
Related Vulnerabilities
CVE-2019-5427 Vulnerability in maven package c3p0:c3p0
CVE-2020-27224 Vulnerability in npm package @theia/preview
CVE-2019-5786 Vulnerability in npm package puppeteer
CVE-2020-7661 Vulnerability in maven package org.webjars.npm:url-regex
CVE-2023-24057 Vulnerability in maven package ca.uhn.hapi.fhir:org.hl7.fhir.validation