An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when performing syntax highlighting of a Standard ML (SML) source file, as demonstrated by input that only contains the "exception" keyword.
Advisories
Source ID Title
Debian DLA Debian DLA DLA-2590-1 pygments security update
Debian DLA Debian DLA DLA-2648-1 mediawiki security update
Debian DLA Debian DLA DLA-2648-2 mediawiki regression update
Debian DSA Debian DSA DSA-4870-1 pygments security update
Debian DSA Debian DSA DSA-4889-1 mediawiki security update
EUVD EUVD EUVD-2021-0207 An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when performing syntax highlighting of a Standard ML (SML) source file, as demonstrated by input that only contains the \"exception\" keyword.
Github GHSA Github GHSA GHSA-9w8r-397f-prfh Infinite Loop in Pygments
Ubuntu USN Ubuntu USN USN-4885-1 Pygments vulnerability
Ubuntu USN Ubuntu USN USN-4897-2 Pygments vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-03T17:37:23.034Z

Reserved: 2020-12-17T00:00:00

Link: CVE-2021-20270

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-03-23T17:15:13.827

Modified: 2024-11-21T05:46:15.097

Link: CVE-2021-20270

cve-icon Redhat

Severity : Moderate

Publid Date: 2020-12-10T00:00:00Z

Links: CVE-2021-20270 - Bugzilla

cve-icon OpenCVE Enrichment

No data.