Unrated severityNVD Advisory· Published Jul 18, 2021· Updated Aug 4, 2024
CVE-2021-36773
CVE-2021-36773
Description
uBlock Origin before 1.36.2 and nMatrix before 4.4.9 support an arbitrary depth of parameter nesting for strict blocking, which allows crafted web sites to cause a denial of service (unbounded recursion that can trigger memory consumption and a loss of all blocking functionality).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- uBlock Origin/uBlock Origindescription
- Range: <1.36.2
Patches
Vulnerability mechanics
No source-code context for this CVE — mechanics is only generated when we can read the actual fix diff. Without that, the four sections (root cause, attack vector, affected code, fix) would be speculation rather than analysis.
References
3- github.com/vtriolet/writings/blob/main/posts/2021/ublock_origin_and_umatrix_denial_of_service.adocmitrex_refsource_MISC
- lists.debian.org/debian-lts-announce/2022/06/msg00024.htmlmitremailing-listx_refsource_MLIST
- news.ycombinator.com/itemmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.