Description
LibSass before 3.6.3 allows a NULL pointer dereference in Sass::Parser::parseCompoundSelector in parser_selectors.cpp.
Remediation
References
https://github.com/sass/libsass/issues/3001
Related Vulnerabilities
CVE-2018-9206 Vulnerability in npm package blueimp-file-upload
CVE-2021-23433 Vulnerability in npm package algoliasearch-helper
CVE-2020-8176 Vulnerability in npm package koa-shopify-auth
CVE-2020-7743 Vulnerability in maven package org.webjars.bower:mathjs
CVE-2018-1000006 Vulnerability in maven package org.webjars.npm:electron