Medium severity5.5NVD Advisory· Published Jun 15, 2018· Updated Jun 17, 2026
CVE-2018-12495
CVE-2018-12495
Description
The quoteblock function in markdown.c in libmarkdown.a in DISCOUNT 2.2.3a allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- cpe:2.3:a:discount_project:discount:2.2.3:a:*:*:*:*:*:*
- osv-coords3 versionspkg:rpm/opensuse/discount&distro=openSUSE%20Leap%2015.0pkg:rpm/opensuse/discount&distro=openSUSE%20Tumbleweedpkg:rpm/suse/discount&distro=SUSE%20Package%20Hub%2015
< 2.2.4-bp150.3.3.1+ 2 more
- (no CPE)range: < 2.2.4-bp150.3.3.1
- (no CPE)range: < 2.2.7-1.3
- (no CPE)range: < 2.2.4-bp150.3.3.1
Patches
Vulnerability mechanics
References
3- github.com/Orc/discount/issues/189nvdExploitThird Party Advisory
- lists.debian.org/debian-lts-announce/2018/09/msg00009.htmlnvdMailing ListThird Party Advisory
- www.debian.org/security/2018/dsa-4293nvdThird Party Advisory
News mentions
0No linked articles in our index yet.