CVE-2021-26813 log

Source
Severity Low
Remote No
Type Denial of service
Description
python-markdown2 >=1.0.1.18, fixed in 2.4.0, is affected by a regular expression denial of service vulnerability. If an attacker provides a malicious string, it can make markdown2 processing difficult or delayed for an extended period of time.
Group Package Affected Fixed Severity Status Ticket
AVG-1637 python-markdown2 2.3.10-1 2.4.0-1 Low Fixed
References
https://github.com/trentm/python-markdown2/pull/387
https://github.com/trentm/python-markdown2/commit/96dff22341489459c8cb832fdfd066a588ec23bf
https://github.com/trentm/python-markdown2/commit/e1954d3a345fc7a4ccc113bd58f7df81ad63b6ec
https://github.com/trentm/python-markdown2/commit/c4b4ccb3f9da33f29b013d6d765fd223a8277cfe