The marked module is vulnerable to a regular expression denial of service. Based on the information published in the public issue, 1k characters can block for around 6 seconds.
Advisories
Source ID Title
EUVD EUVD EUVD-2018-0342 The marked module is vulnerable to a regular expression denial of service. Based on the information published in the public issue, 1k characters can block for around 6 seconds.
Github GHSA Github GHSA GHSA-x5pg-88wf-qq4p Regular Expression Denial of Service in marked
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: hackerone

Published:

Updated: 2024-09-17T03:44:01.567Z

Reserved: 2017-10-29T00:00:00

Link: CVE-2017-16114

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-06-07T02:29:02.770

Modified: 2024-11-21T03:15:50.920

Link: CVE-2017-16114

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.