VYPR
High severity8.8NVD Advisory· Published Mar 3, 2022· Updated Jun 17, 2026

CVE-2022-24724

CVE-2022-24724

Description

cmark-gfm is GitHub's extended version of the C reference implementation of CommonMark. Prior to versions 0.29.0.gfm.3 and 0.28.3.gfm.21, an integer overflow in cmark-gfm's table row parsing table.c:row_from_string may lead to heap memory corruption when parsing tables who's marker rows contain more than UINT16_MAX columns. The impact of this heap corruption ranges from Information Leak to Arbitrary Code Execution depending on how and where cmark-gfm is used. If cmark-gfm is used for rendering remote user controlled markdown, this vulnerability may lead to Remote Code Execution (RCE) in applications employing affected versions of the cmark-gfm library. This vulnerability has been patched in the following cmark-gfm versions 0.29.0.gfm.3 and 0.28.3.gfm.21. A workaround is available. The vulnerability exists in the table markdown extensions of cmark-gfm. Disabling the table extension will prevent this vulnerability from being triggered.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • GitHub/Cmark Gfm3 versions
    cpe:2.3:a:github:cmark-gfm:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:github:cmark-gfm:*:*:*:*:*:*:*:*range: <0.28.3.gfm.21
    • (no CPE)range: <0.29.0.gfm.3, <0.28.3.gfm.21
    • (no CPE)range: < 0.28.3.gfm.21
  • cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*
    • cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
    • cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
  • osv-coords2 versions
    < 2.0.6-6.el8_6+ 1 more
    • (no CPE)range: < 2.0.6-6.el8_6
    • (no CPE)range: < 2.0.6-6.el8_6

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.